This forum is silly.
-
- Posts: 3
- Joined: Sun May 07, 2017 5:29 am
This forum is silly.
Silly you say? Why yes, yes indeed. In fact, it is so silly that it sends, via unencrypted email (kind of like a post card) a password reset link AND a password when you click on the "I forgot my password" link. So this forum is silly because it doesn't take it's database security seriously.
Re: This forum is silly.
Password reset emails don't contain your password.
Those are encrypted in the database, so that would be impossible to do.
The password you're referring to that is included in the reset email is a temporary one that's randomly generated.
If interception is a concern, any time you reset your password it should obviously be changed immediately.
Those are encrypted in the database, so that would be impossible to do.
The password you're referring to that is included in the reset email is a temporary one that's randomly generated.
If interception is a concern, any time you reset your password it should obviously be changed immediately.