@kaniini I'm probably more lax than I should be but definitely beyond the average user. Agree entirely on pro failures but not nearly enough is done for the individual level to make it understandable and accessible to people, making them the massive weak link. People laugh about 'end user errors' a lot but quietly don't actually address it and instead keep everything ambiguous.
Conversation
Notices
-
sophia (sophia@glitterkitten.co.uk)'s status on Wednesday, 23-Jan-2019 10:40:50 JST sophia - Diogo Cordeiro repeated this.
-
sophia (sophia@glitterkitten.co.uk)'s status on Wednesday, 23-Jan-2019 10:47:11 JST sophia @belghast @kaniini exactly. It's "haha your password is bad you fool, you imbecile" and so rarely "here's why your password is insecure, the reason we suggest you jump through these hoops, and what it could mean for you if something is compromised"
I use my in-laws as an example of how these things are done. The former is incredibly insulting and at times infantalising, but too the latter is almost always phrased in a jargony way they wouldn't understand at all.
Diogo Cordeiro repeated this.