Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Why accounts should have anything to do with email or email address. It's bad policy and I hate it. We all know that email isn't secure. For many sites I would like to disable password recovery due these inherit security issues related to email. If you ever login to Gmail, after that you have always clear all cookies and cache data and possible super cookies. After that you would need to login (again) to email to uh oh, access other sites. Afaik this is super bad idea. Naturally you could save the link as bookmark, which would work. But security would still suck.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: