Yes, the password stored will only ever be the hash type, hash salt, and hash. You should never store it in plain text.
If you're interested you can look at the actual model. You might be interested in these functions: set_password(), get_hexdigest(), and check_password(). These make it clear what is happening, and it's good to know. http://code.djangoproject.com/browser/django/trunk/django/contrib/auth/models.py Shawn -- You received this message because you are subscribed to the Google Groups "Django users" group. To post to this group, send email to django-us...@googlegroups.com. To unsubscribe from this group, send email to django-users+unsubscr...@googlegroups.com. For more options, visit this group at http://groups.google.com/group/django-users?hl=en.