How to not hardcode passwords?

后端 未结 4 2115
广开言路
广开言路 2020-12-30 10:00

In my last question \"Portable database for storing secrets\" the best answer until now tell to use sqlite-crypt.

Reading sqlite-crypt docs, the new param for open

4条回答
  •  抹茶落季
    2020-12-30 10:50

    Some options.

    1. Ask the user for a passkey (aka they memorize one password to get to all their password) (good idea)

    2. Create a key on the first startup of the app, which is then hashed in your own unique way (bad idea)

    3. Use a mixture of the above, aka give users the options of one, or two (remember my password checkbox)

提交回复
热议问题