4 ms·
I'd love it if every time I wanted to log in, I entered my username/email, saw a two factor-auth, and had an email sent with a time sensitive link containing my
by laxatives 10y ago
I'd love it if every time I wanted to log in, I entered my username/email, saw a two factor-auth, and had an email sent with a time sensitive link containing my session credentials. But this would be a pain in the ass if I had a slow connection or used an old email address. And worse, it be totally unsafe if I could (easily?) change the email address attached to the account.
- kkhire 10y agomagic link. That's what medium does for email logins, and slack offers the option as well. it's easily one of the safest methods
- arianvanp 10y agoThough slack magic links always stay valid... Leaving a nice plain text password for all MTAs that forward my mail.
- markild 10y agoAh.. Yes, but that will leave anyone that has somehow gotten access to my mail to suddenly have access to all my accounts then, wouldn't it?
- ascorbic 10y agoThey already do if they have password reset over email. That's why you need 2FA.