Quote:
Originally Posted by Gambet
You're calling the players idiots as much as I am, only in my case it's explicit and in yours it's implicit.
If someone wanted to go as far as trying to crack a persons password based on something as stupid as a Graal bank password, then what makes you think they wouldn't go to an md5 decryption site that does the work for them?
Sure, it would require an extra step, but if they're willing to do it in the first place, it won't stop them.
|
There is nothing wrong with being more secure. Of course its still flawed, but it can still be a deterrent. Also, my request for stating that staff can see your password right in the npc, as my last post requested, still stands, not to mention the other safety edit (using player.account serverside instead of letting the client pass what their account name is, since they can change it)