2. Passwords are generally low entropy. If you've used your mining pw elsewhere change it now.
I use a
securely generated random password for every slave and every pool. Even if the passwords aren't hashed there's no way any attacker can get into any other pool account.
Is not necesary to have a high secure worker pass. Even when pass is so simple (but diferent as other passwords you use in your life) the only use that it has is mine. Then, if somebody knows your worker/pass combination, the only can do is mine for you

I have simply workname/passwords combinations, but not related to other pass used, to get easy remembers when setup diferents workers
That is true.
OFF TOPIC: You speak better English than some English people I know, certainly better than I speak Spanish (I lived there for 5 years)
K.