Of course, sending passwords in an unencrypted email is bad practice, but that's another story.
Of course, sending passwords in an unencrypted email is bad practice, but that's another story.
And if it's possible to automatically reverse the encryption, then it's not far off plain text.
When each line of code you write is a point of failure, I would rather trust an algorithm (e.g. bcrypt) which is immune to all of them rather than reversible encryption which needs only two.
It's always (almost) completely unnecessary to store encrypted passwords.
AES-256 symmetric encryption (as one example) is designed to be reversible while a SHA-512 hash is not. What does reversible mean you ask? It means that plaintext can be made into ciphertext and then back to plaintext again. It's designed to be undone/reversed by the party that holds the key/password.
I believe that the parent was simply pointing out that encryption is reversible while hashes are not. This is a point of confusion for many in IT/dev.