this post was submitted on 14 Feb 2025
46 points (97.9% liked)

Asklemmy

45236 readers
1770 users here now

A loosely moderated place to ask open-ended questions

Search asklemmy πŸ”

If your post meets the following criteria, it's welcome here!

  1. Open-ended question
  2. Not offensive: at this point, we do not have the bandwidth to moderate overtly political discussions. Assume best intent and be excellent to each other.
  3. Not regarding using or support for Lemmy: context, see the list of support communities and tools for finding communities below
  4. Not ad nauseam inducing: please make sure it is a question that would be new to most members
  5. An actual topic of discussion

Looking for support?

Looking for a community?

~Icon~ ~by~ ~@Double_[email protected]~

founded 5 years ago
MODERATORS
 

(bonus points if it's being used for official business purposes)

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 89 points 1 week ago (3 children)

A Google Sheet used as a password manager that every employee had access to. To keep it β€œsecure” the cells with the passwords were hidden by changing the background color to match the text color.

[–] Veedem 28 points 1 week ago
[–] blackbirdbiryani 17 points 1 week ago (1 children)

Lmao. I once had a senior dev put database passwords into documentation, and then was about to email those out to interview candidates with the passwords 'blacked' out. I caught it quick enough before it could be sent thankfully.

[–] [email protected] 2 points 1 week ago (1 children)

Yeouch. How long ago was this? It feels like the standards for even junior devs have gone way up.

...but I guess even the C-students must find jobs eventually...?

[–] blackbirdbiryani 4 points 1 week ago

2024 lol. Maybe senior dev is an overstatement, he was just more senior than me. He also left a database where the main table had one varchar, freetext column that users wrote multiple fields into because it was a 'simpler user experience' . Was a pain to extract all those fields with regex...

[–] [email protected] 2 points 1 week ago

Oh dear...

I don't even understand how that would get past even the first couple of people using it. I imagine the idea was that they'd copy/paste the value into the password field. But did nobody ever paste the password into somewhere other than a password field and realize, "Hey, I can see this password!"...even accidentally?