Storing sensitive data in plaintext in the registry makes the data more easily accessible than if encrypted. This significantly lowers the difficulty of exploitation by attackers.
Sensitive information should not be stored in plaintext in a registry.
Even if heavy fortifications are in place, sensitive data should be
encrypted to prevent the risk of losing confidentiality.