Comments (3)
We probably need to add a couple of other issues around this. We should:
- Send an email to Verify the user's email.
- Verify the user's email.
- Then we can send an expiratory link to reset it.
- Then this issue.
from sgf-legacy.
@zrmeier
Apologies for being late to this but do you mean every time a user wishes to reset their password the system checks to verify their current email by sending an email to their registered address before sending out a password reset link? If that is the case not sure what the current industry take on that is but might have some security implications. If I've misunderstood please let me know as I think security is very important and that we should verify all emails on sign up and then trust them until the user requests to change their registered email.
from sgf-legacy.
I think that sounds fine. I think @zrmeier is talking about what happens when you forget your password on a lot of sites - they send a password reset link, or a verification code to your email, and then you get to reset your password
from sgf-legacy.
Related Issues (20)
- create update email endpoint HOT 1
- create get user posts endpoint
- add the backend into the server HOT 3
- set up the sql database HOT 2
- Create A Logo HOT 5
- create a design
- Front end things to do HOT 3
- Long term discussion: Privacy respecting monatisation and site upkeep (Topic for future consideration)
- Login Form not accepting Username and Password
- Test issue for discord webhook HOT 1
- Creating New User form bug
- Come up with basic design for front end HOT 1
- Allow the user to filter posts by tags we set HOT 2
- Implement Swagger HOT 11
- Account linkage HOT 2
- An exception while registering a new user.
- New Post - Not Accepting Inputs HOT 1
- Create a Post
- Design a user profile section
- Migrating from Django to FastAPI HOT 2
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from sgf-legacy.