aboutsummaryrefslogtreecommitdiffstats
path: root/backend/node_modules/bcryptjs/src/bcrypt/prng/README.md
diff options
context:
space:
mode:
Diffstat (limited to 'backend/node_modules/bcryptjs/src/bcrypt/prng/README.md')
-rw-r--r--backend/node_modules/bcryptjs/src/bcrypt/prng/README.md5
1 files changed, 5 insertions, 0 deletions
diff --git a/backend/node_modules/bcryptjs/src/bcrypt/prng/README.md b/backend/node_modules/bcryptjs/src/bcrypt/prng/README.md
new file mode 100644
index 0000000..e6c2c68
--- /dev/null
+++ b/backend/node_modules/bcryptjs/src/bcrypt/prng/README.md
@@ -0,0 +1,5 @@
+Because of [reasonable security doubts](https://github.com/dcodeIO/bcrypt.js/issues/16), these files, which used to be
+a part of bcrypt-isaac.js, are no longer used but are kept here for reference only.
+
+What is required instead is a proper way to collect entropy sources (using an intermediate stream cipher) which is then
+used to seed the CSPRNG. Pick one and use `bcrypt.setRandomFallback` instead.