Use scrypt for password-based key derivation
This should provide better protection against brute force attacks than PBKDF2.
Eventually we'll use Argon2 (#170), but we don't have time to switch to native crypto before 1.0.
This should provide better protection against brute force attacks than PBKDF2.
Eventually we'll use Argon2 (#170), but we don't have time to switch to native crypto before 1.0.