Disclaimer: Views are personal and I'm not part of management at WA though do try to be naturally as impartial as possible. This particular topic is of greater general interest to me as well.
None of those responses are giving me that warm fuzzy feeling - especially not the part about plain text passwords being low-risk.
Yeah, I can see how you'd feel like that. I personally used to want a strong
"Confident Sounding Message[SUP]TM[/SUP]" from the top brass of any company I was doing business with. But over time observed that positive messaging seemed to hardly ever correlate, with actual security or competence, and was more to do with people's feelings of security. The reality always is nearly always more shaded and complex, than simple assurances.
So few companies actually come out and say, "Hey guys, yeah are systems are a ****". Many would be surprised how much really sloppy stuff goes on behind the scenes and
across the board. Humans are simply not infallible, no matter how big or important sounding the company is.
If anyone is interested, I highly recommend anything by the legendary security demigod, Bruce Schneier. His recent TED talk on the
feeling of security vs the actual
state of security is particularly good:
http://www.youtube.com/watch?v=wQJC2MMB8nA
The economics are very also interesting. Like in terms of encryption software, often it's actually cheaper to make people feel secure, than be secure, which unfortunately creates a rather big market incentive, to be evil.
I'm wondering how you store these passwords and info on your db. Especially credit card info.
It's encrypted within the DB, and the keys I believe are stored seperately with a pretty strict access protocol and audit. I'm not sure of the exact details though, I'm just remember from a security overview meeting a few years back, so my mem is probably a little hazy
