Post #1107515
2026-04-10 16:08 UTC
https://github.com/str4d/rage , the Rust implementation of https://age-encryption.org/v1 , has the rather original accessibility decision to hardcode a time limit of 30 second to type the pass phrase for a file encrypted with one. Because nobody has to stop to think, realize they have mistyped and retype the pass phrase or anything like that. I really wonder what kind of security hole that's supposed to fix. And if the hash tags seem salty, yes, I am, I could have leaked a sensitive pass phrase ten minutes ago on cause of that decision.
#a11y #ageEncryption #RustProgrammersNeverMistype
Replies (0)
No replies.