I signed up for a service to host a site with a hosting service company that has a number of recommendations on this forum.
In the process, I signed up as a client on their website. I then received a confirmation email with my client area password in plain text. Not a temporary generated password but the one I entered at signup.
As far as I understand, this means that the password is stored in plain text and not encrypted on their server.
Being a hosting company, I am quite surprised by this oversight. I now doubt the rest of their security practices.
Is my assessment of the plain text storing of my password correct, and is it something I should be concerned about? I just want to check before I rant and cancel my account/ request a refund.
In the process, I signed up as a client on their website. I then received a confirmation email with my client area password in plain text. Not a temporary generated password but the one I entered at signup.
As far as I understand, this means that the password is stored in plain text and not encrypted on their server.
Being a hosting company, I am quite surprised by this oversight. I now doubt the rest of their security practices.
Is my assessment of the plain text storing of my password correct, and is it something I should be concerned about? I just want to check before I rant and cancel my account/ request a refund.