← Back to context

Comment by kortex

18 days ago

They are using the Hashicorp Vault implementation, and it's been around for years. I think we can safely say they know what they are doing.

Can we?

Hashicorp is a devops company, not a cryptography company. The "hash" in their name bears no reference to cryptographic hashing.

If the implementation came from DJB, or RSA corporation, or the OpenSSH developers that would be one thing.