Earlier quoted context omitted.
> for using email outreach software. I hope they ban people sending bulk email too... You should send that stuff from your own server or MailChimp etc.
I didn't understand what that meant, is it basically euphemism for almost-but-not-techically-spam emails many startups and "personal brands" send out?
Don't use third party auth to sign in
171–180 of 544 posts
Re: Don't use third party auth to sign in
#172Earlier quoted context omitted.
No, it's not a problem. It's your problem if you become entrenched in their (or Apple's / FB / whatever) services. I have a google account to test my devices / emulators. Never logged in gmail with that account, never will. If they cut it off, I can make another. Same with Apple. I have an Apple free ID for running virtual machines with MacOS / iOS and that's all. I tell my customers to create their own Apple ID and…
I do not have a FB account, but the test accounts I create d got banned fairly quickly. This was to work on an API integration.
Re: Don't use third party auth to sign in
#173Earlier quoted context omitted.
> for using email outreach software. I hope they ban people sending bulk email too... You should send that stuff from your own server or MailChimp etc.
Why is it okay to send bulk mail from service X or Y but not from service Z?
Re: Don't use third party auth to sign in
#174OVH supports Yubikeys, has DNSSEC and will give you 5GB mailbox for free in your domain just for buying it from them. You can also pay like 20$ per year for 100GB of space for WWW, backups (preferably encrypted) and other stuff.
Re: Don't use third party auth to sign in
#175I agree with the general premise of this article that gmail/outlook/facebook owns too much power being able to lock you down with no due process. However, for random sites, entering an email/password worries me because I have no idea how this password is handled server side, is it stored in plaintext or with a weak algorithm? The vast majority here don't care that much because they use a password manager but I'm worr…
> A properly set up google sign in makes it impossible to do that at least. Thoughts?
Getting a good password manager and using it correctly removes the threat of someone getting your password and abusing it on other sites.
Re: Don't use third party auth to sign in
#176Earlier quoted context omitted.
Do you not see this as a problem? With the amount of services Google offer, losing them can be devastating; photos, emails, Android backups, contacts and so so much more. This pandemic has been reliant on emails to access services; it's how I get my payslips, talk to my employer, get current information, engage with legal services, and essentially maintain my access to society. Losing my emails would be devastating (…
I do not. Becoming dependent on a large e-mail provider is only because of continued willful ignorance. Better education for how digital services work and how to properly handle your digital identity is the right way to handle this. Implementing regulation and cementing the "major" e-mail providers who have the resources to comply will only deepen people's dependence on these corporations.
Do I have 15 emails addresses with 15 different providers? When a form asks for my email address I can only give one, what happens if that provider goes away?
What if a government doesn't like $provider and seizes the business? Now I can't get a reset link/change my password/prove my identity...Many government online services ask for your email these days, so you don't really have much control over that. If you said I am joe@blogs.com and blogs.com dies, you're toast.
Please do explain.
Re: Don't use third party auth to sign in
#177Earlier quoted context omitted.
$6/month doesn't sound like much... Till you realise you'll probably have this setup for 20 years, and suddenly it's $1200. That's a lot to protect against a thing that will probably not happen (account being banned)
There are other options available. I personally don't use it, but Zoho Mail is free with paid plans starting at $1/mo.
I had an incident a few weeks ago, where my mailbox lost about 1 weeks worth of messages, and were not retrievable.
I have used them for over 5 years, and this is the only negative incident.
Re: Don't use third party auth to sign in
#178Earlier quoted context omitted.
You can disable these annoying prompts by going to https://myaccount.google.com/permissions and disabling "Google Account sign-in prompts". Ideally it should have been user opt in but Google followed dark pattern here.
At the risk of stating the obvious - This implies that Google already knows that it's you when it shows the sign-in prompt on some 3rd party website and they are already tracking you there even though you are not signed in. Lovely. Not that you'd expected anything else from Google.
Re: Don't use third party auth to sign in
#179I agree with the general premise of this article that gmail/outlook/facebook owns too much power being able to lock you down with no due process. However, for random sites, entering an email/password worries me because I have no idea how this password is handled server side, is it stored in plaintext or with a weak algorithm? The vast majority here don't care that much because they use a password manager but I'm worr…
> [...]starts looking through its database for passwords that look reusable and try them on other important website. How easy would it be to set a nice honeypot website that requires a username/password? > A properly set up google sign in makes it impossible to do that at least. Thoughts? Getting a good password manager and using it correctly removes the threat of someone getting your password and abusing it on other…