Password hashing and managed users
Current password authentication verifies PostgreSQL pgcrypto-backed bcrypt hashes. Password changes replace the stored hash rather than disclosing the old permanent secret.
- One-way bcrypt verification
- No normal readable-password account view
- Password replacement rather than recovery of the old secret
