NEVER reveal your 'powder.def' file to anyone.

  • cctvdude99
    16th Dec 2014 Member 0 Permalink
    What Feynman said - PT reads the info from powder.pref, which is where your session is stored.
    It doesn't literally contain your username and password, but TPT uses it to sign in, so it sort of is like a key to access your account (in-game only).
  • Kikkin
    20th Jan 2015 Banned 0 Permalink
  • Antares
    20th Feb 2015 Member 0 Permalink

    "powder.def" ? I thought it was "powder.pref" :p


    OR is it both files?

  • wolfy1339
    20th Feb 2015 Member 0 Permalink
    @Antares (View Post)
    Yes you are right. It is powder.pref and before it was named powder.def
  • the_new_powder99999
    20th Feb 2015 Member 0 Permalink

    Oops, I think everyone in my class now has my password, probably time to change it...

  • Kikkin
    21st Feb 2015 Banned 0 Permalink
  • CeeJayBee
    21st Feb 2015 Member 0 Permalink
    @the_new_powder99999 (View Post)
    No they don't... all you could really do would be spoof someone's account temporarily (like socially engineering someone into copying their session key in their Facebook URL to get into their account). You couldn't even change your password as that's done through the website. And if they've had the file for a while, I'm guessing you've logged in/out or jacob1/Simon has destroyed the session server at least once in between you giving them it (all of those reset the session key). You're likely safe.
  • jacob1
    21st Feb 2015 Developer 0 Permalink
    @CeeJayBee (View Post)
    You can actually use session IDs on the website. But changing your password requires you to type in the old one.

    Also yeah, if I see you giving out powder.pref i'll ban you for an hour. That makes the session keys invalid :). It's especially important to make sure you didn't include it when distributing any mods, or mod sources.
  • astrocode317
    1st Mar 2015 Member 0 Permalink

  • KydonShadow
    1st Mar 2015 Member 0 Permalink

