Why is nobody interested in verifying their site's password storage?
Is it that:
- too much effort is (thought to be) required for validating ones site
- the incentive is not good enough
- it's not clear what it's about.
I'd like any feedback, so that I can improve the possibility of people showing off their good password storage algorithms.