Modern Windows apps also should store passwords etc in secure storage provided by the OS, which is encrypted.

Rather like writing down the combination to the secure safe, then storing it inside of said safe.

I've actually witnessed someone do just that. I acidly corrected the individual and told them to use the other secure safe.

I say secure safe within a specific context, as it has very specific ratings and itself is inside of a secure facility, inside of a specially rated vault that has 24/7 monitoring via multiple methods.

