Log In / Sign Up
HOME > Chowhound > Site Talk >
d
derekslager Sep 1, 2006 12:17 AM

Secure login

The login form is currently unprotected -- should post to an SSL-protected login form. Similarly, users should not receive passwords via email after signing up (or ever).

  1. c
    Carty Sep 2, 2006 03:40 PM

    yes - *very* poor security practice, especially emailing passwords in the clear. 'Beta' is no excuse, security should come first.

    3 Replies
    1. re: Carty
      Jacquilynne Sep 2, 2006 04:22 PM

      It's a food website - why does it need to be secure? There's no financial or personal information gathered.

      1. re: Jacquilynne
        Chris VR Sep 2, 2006 09:47 PM

        Many people use the same login info for multiple sites. I think it's poor netiquette to send passwords in plaintext.

        1. re: Chris VR
          AnneInMpls Sep 12, 2006 06:23 PM

          Plus, there's always the chance of a malicious person posting under someone else's name. I would hate to be the one who's kicked off of Chowhound because a spammer started posting offensive or junk material using my name and password.

          Anne

    2. AnneInMpls Sep 1, 2006 12:47 AM

      Yup, what he said.

      Anne

      Share with your friendsX