| ▲ | stetrain 3 hours ago | |||||||||||||
I get the idea. If email links are secure enough to use for password resets, just do that every time. Then you eliminate a whole category of password attacks. But it’s definitely annoying for a frequently used service. | ||||||||||||||
| ▲ | callc 3 hours ago | parent [-] | |||||||||||||
Maybe this gets us closer to some idea of email being a more protected digital service, that has some legal guarantees? Putting the potential negatives under the rug for a second… I would be nice to have email that (1) you can’t get locked out of arbitrarily, (2) acts similarly to US mailbox (in its protections and universal service), (3) acts as an identity Is this a bad idea? | ||||||||||||||
| ||||||||||||||