Hacker News .hnnew | past | comments | ask | show | jobs | submitlogin

The added security comes through how the new "plaintext password" is randomly generated (so you don't have to worry about users picking bad passwords).

~~Although it seems PATs are ~42 bits, which seems a little low~~



I didn't even know access tokens were a thing until just right now. In my reading about them, I found this, which has a screenshot, which suggests the token has ~40 hex digits. Assuming they're independent and random, that yields ~160 bits. Where are you seeing 42?

https://help.github.com/en/github/authenticating-to-github/c...


Wow, I completely messed up characters and bits.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: