• fxomt@lemm.ee
    link
    fedilink
    English
    arrow-up
    6
    ·
    2 days ago

    For passwords i have to remember i use passphrases.

    But for stored passwords? i like 35 characters. Most services accept it and doesn’t seem to have a con.

    • einkorn@feddit.org
      link
      fedilink
      English
      arrow-up
      6
      ·
      1 day ago

      And then there are those services that let you enter arbitrarily long passwords in the registration form but only save something like 16 characters.

      • Mike Wooskey
        link
        fedilink
        English
        arrow-up
        4
        ·
        1 day ago

        I hate this situation. What horrible design choices in their code!

      • fxomt@lemm.ee
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 day ago

        I know about them but I haven’t experienced it yet. Hope I never will though.

          • fxomt@lemm.ee
            link
            fedilink
            English
            arrow-up
            1
            ·
            1 day ago

            You wouldn’t. You’d have to find out yourself after not being able to log in despite you being 100% sure that your password is correct :/

            • amorpheus@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              edit-2
              1 day ago

              No, that’s the point, you’d never know whether they only validate a subset of the password. Only by testing different variations you would know that less than the whole string still works.

              • fxomt@lemm.ee
                link
                fedilink
                English
                arrow-up
                1
                ·
                1 day ago

                It’s a common enough to safely assume i’d guess. I’ve heard many users complain about it despite not me experiencing it myself. They probably didn’t try every single variation of the password but maybe it’s an infamous bug for many services?

                • amorpheus@lemmy.world
                  link
                  fedilink
                  English
                  arrow-up
                  2
                  ·
                  1 day ago

                  I wouldn’t speculate on how common it is but limiting passwords seems to happen more than it should. So maybe many are taking the stealth approach.

                  One site I know where this happens (at least I experienced it some years ago) was Blizzard. Found out by sheer luck after I clearly fumbled the end of my password and was logged in regardless.

                  • fxomt@lemm.ee
                    link
                    fedilink
                    English
                    arrow-up
                    1
                    ·
                    1 day ago

                    Jesus, worth $60 billion, and can’t even store passwords properly? lmao

                    I wouldn’t know whether to feel relieved after the panic of realizing not being able to log in, or being disappointed of how shit the code is lol