How unsure is the Steemit login

Hello folks, today I was thinking about how unsure is to make the user, hold the private key of the password so it is never stored in the Steemit database. I mean for me this method dosn't make sense because yeah if you lose it you lose the access to your account, and if someone takes it there is no 2fa for steemit.
So whats the point? we have to store this key without encryption in the worst posible enviorment.
Hopefully someone knows the answer for this.Steemit-big.png

H2
H3
H4
3 columns
2 columns
1 column
Join the conversation now