Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feature request: Account Login using Unique User Identifier + 2FA #383

Closed
ghost opened this issue Nov 14, 2024 · 4 comments
Closed

feature request: Account Login using Unique User Identifier + 2FA #383

ghost opened this issue Nov 14, 2024 · 4 comments
Labels
privacy Change which improves user privacy

Comments

@ghost
Copy link

ghost commented Nov 14, 2024

What do you want to see?

Login , no email, no password,

revolt

  • Create a new account ---> Generate Unique User Identifier ---> Bind 2FA ---> Complete

  • revolt Create a new account. EMail is no longer supported.

But you can still log in with your email


Encrypting Email
Don’t.
Email is insecure. Even with PGP, it’s default-plaintext, which means that even if you do everything right, some totally reasonable person you mail, doing totally reasonable things, will invariably CC the quoted plaintext of your encrypted message to someone else (we don’t know a PGP email user who hasn’t seen this happen). PGP email is forward-insecure. Email metadata, including the subject (which is literally message content), are always plaintext. https://www.latacora.com/blog/2019/07/16/the-pgp-problem/

@ghost ghost added the enhancement label Nov 14, 2024
@github-project-automation github-project-automation bot moved this to 🆕 Untriaged in Revolt Project Nov 14, 2024
@Zomatree
Copy link
Member

We don't plan on removing the email requirement, this is to help prevent spam and malicious use, moderation and contacting the user.

@Zomatree Zomatree added the privacy Change which improves user privacy label Nov 14, 2024
@Zomatree Zomatree closed this as not planned Won't fix, can't repro, duplicate, stale Nov 14, 2024
@github-project-automation github-project-automation bot moved this from 🆕 Untriaged to ✅ Done in Revolt Project Nov 14, 2024
@ghost
Copy link
Author

ghost commented Nov 15, 2024

hi bro
Email, can't stop spam mail

I can register 30 proton mails at once to send spam mails to your room

@MCausc78
Copy link

hi bro Email, can't stop spam mail

I can register 30 proton mails at once to send spam mails to your room

There are CAPTCHAs. You won't be just able to register ton of accounts. You will need to solve CAPTCHA manually.

@ghost
Copy link
Author

ghost commented Nov 15, 2024

Bypassing CAPTCHA is so easy, it's done automatically.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
privacy Change which improves user privacy
Projects
Archived in project
Development

No branches or pull requests

2 participants