Page 1 of 1

Password emailed in plain text....

New postPosted: Fri May 28, 2010 11:55 am
by cwebb
First, thanks for the forum - it's appreciated!

But I have to ask, can you change the policy of sending out registration passwords via email in plain text?

The email specified that you keep the passwords encrypted on the site, but if you send it out via email during registration, it kind of defeats the idea, doesn't it?

Just a little whine.

Thanks again.

Re: Password emailed in plain text....

New postPosted: Sun May 30, 2010 11:09 am
by marwatk
Hmm,

I'm not quite sure what you mean, the registration codes?

-Marcus

Re: Password emailed in plain text....

New postPosted: Wed Jun 02, 2010 3:48 pm
by cwebb
Hi Marcus,

When I registered to post on the forum, the confirmation email that was sent out to me included my password.

We all know how insecure email is, so sending a password by email is pretty silly, it seems. Kind of defeats the purpose of the password!

I thought you might want to change the policy of sending passwords in the confirmation email...

Just a suggestion.

(Podtrapper's Great, BTW)

Thanks again.

Re: Password emailed in plain text....

New postPosted: Mon Jun 07, 2010 8:45 am
by marwatk
Ah, gotcha. Not sure why it does that, I'll see if I can get it fixed (it's part of phpbb). For what it's worth, though, my server will use TLS to encrypt email between most major servers (any that support it).

-Marcus

thanks Re: Password emailed in plain text....

New postPosted: Mon Jun 07, 2010 12:14 pm
by cwebb
Yeah, I figured it was part of the BB default.

I appreciate your response, thanks.