Bitcoin Forum

Other => New forum software => Topic started by: nahtnam on November 10, 2017, 11:47:35 AM



Title: Email is Taken
Post by: nahtnam on November 10, 2017, 11:47:35 AM
Does anyone else believe that the "Email is Taken" error message is bad? It gives away information that the email is signed up on the website which is NOT public information. Username is fine because everyone can see it, but email error should not say that.


Title: Re: Email is Taken
Post by: Str1x on November 10, 2017, 09:20:00 PM
Does anyone else believe that the "Email is Taken" error message is bad? It gives away information that the email is signed up on the website which is NOT public information. Username is fine because everyone can see it, but email error should not say that.

What are you suggesting? Just an error message without the text? The error message should be there if you don't want multiple accounts on 1 email adress.If Theymos would remove the 1 account 1 email limitation than this forum is doomed to be spammed by account bots.

Maybe a suggestion would be to limit the amount of time you can try to make an account if the email is already used. In that way hackers can't just spamm different email adresses to check whether an email is linked to an account. Say if email account is taken -> wait 5 min to retry


Title: Re: Email is Taken
Post by: ahmadmoussa on November 10, 2017, 09:22:33 PM
Does anyone else believe that the "Email is Taken" error message is bad? It gives away information that the email is signed up on the website which is NOT public information. Username is fine because everyone can see it, but email error should not say that.
No, i don't think it's a leak of information cause actually everyone could take that nickname. And the message " email is taken is necessary.


Title: Re: Email is Taken
Post by: nahtnam on November 11, 2017, 03:43:56 AM
Does anyone else believe that the "Email is Taken" error message is bad? It gives away information that the email is signed up on the website which is NOT public information. Username is fine because everyone can see it, but email error should not say that.

What are you suggesting? Just an error message without the text? The error message should be there if you don't want multiple accounts on 1 email adress.If Theymos would remove the 1 account 1 email limitation than this forum is doomed to be spammed by account bots.

Maybe a suggestion would be to limit the amount of time you can try to make an account if the email is already used. In that way hackers can't just spamm different email adresses to check whether an email is linked to an account. Say if email account is taken -> wait 5 min to retry

No, that error should not be shown. Instead once the form is submitted it should say "If an account does not already exist, we will send you a confirmation email"


Title: Re: Email is Taken
Post by: BiiT MAster 666 on January 15, 2018, 08:53:53 AM
In my opinion, the error is not good, it should be corrected