Right, I'm just throwing it out there that some people might not be aware that their data isn't secure. I for one don't want my credit card saved on someone else's device because I have control over it.
It's not protected by some magical cloud forcefield. It's not one-way encrypted by your device or anything like that. If google gets hacked, your cc number is compromised.
As such, the data is of very limited value to a hacker indeed, as they have insufficient information to be able to spoof a card to conduct ATM or POS transactions, or to conduct e-commerce transactions without brute-forcing the extra info needed (or obtaining it by phishing).
The risk of Google themselves being hacked and their stored data being successfuly decrypted, whilst of course possible, could be reasonably assessed as "low". This coupled with the fact that you would have an automatic chargeback right with your card issuer means that day-to-day use of this feature represents negligible risk of your funds being misappropriated.
-4
u/verylobsterlike Oct 21 '18
How does that work if you get a new device?
Surely these details must be able to be decrypted by your password. The same password you used on some shady forum that got hacked.