I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
-
@ElliesSurviving
I'd drive some old clunker (and maintain the thing) if I had to - but I never even had a licence
@vkc -
@ElliesSurviving
To be fair, it heard her the first time.And then it also rattled off some info about the company that made it. I don't know what it heard to do that. I just know I'm not getting back into that thing.
@vkc -
"But Veronica! Why don't you just click the link?"
Because I'm often not signed in to that email provider! "Hang on, let me dig out my phone" is friction, which for some folks might be welcome! But I'm ancient and prefer the old fashioned password prompt, which can sync across all devices without cookies.
@vkc that does seem very annoying.
If you don't mind me suggesting an alternative... I signed up once and have been using their RSS feed ever since which gives the whole articles, not just headlines. No login required.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @404mediaco magic links come straight from hell.
-
@vkc that does seem very annoying.
If you don't mind me suggesting an alternative... I signed up once and have been using their RSS feed ever since which gives the whole articles, not just headlines. No login required.
@dacmot I routinely use RSS but not on every device, frequently enough I come across a link organically and run into these messes!
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @juandesant @404mediaco This pattern needs to die. Iβm starting to see this more and more with new apps. I get theyβre hoping to avoid disposable email addresses, but Iβm certain this will have the opposite effect of what theyβre hoping for.
-
@dacmot I routinely use RSS but not on every device, frequently enough I come across a link organically and run into these messes!
@vkc definitely sub-optimal.
-
@admin I use a service to generate fake emails for this sort of thing, it's awesome! I can always tell *exactly* who sold my email to folks, or where email leaks came from.
I almost never give out my real email to anyone other than a human I know in the real world.
I have been doing the same thing for years, and I found Linkedin to be one of the big offenders.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc Yeah, I want to log in and read this now, not whenever the email with the magic link percolates through the intertubes.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @404mediaco 100% agreed. As someone who is not signed in to email on every device, having to click a magic link on my phone and then send the link to my PC, these sign in prompts are a gigantic pain in the ass.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @404mediaco "Magic Links" are the dumbest "security" I can think of.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @404mediaco I didn't pay $88 for a YubiKey just to have a website mail a password to my phone so I can log onto my computer.
-
"But Veronica! Why don't you just click the link?"
Because I'm often not signed in to that email provider! "Hang on, let me dig out my phone" is friction, which for some folks might be welcome! But I'm ancient and prefer the old fashioned password prompt, which can sync across all devices without cookies.
@vkc
I understand why 404media does this, but it is annoying and I wish I had an answer for this. -
@admin I use a service to generate fake emails for this sort of thing, it's awesome! I can always tell *exactly* who sold my email to folks, or where email leaks came from.
I almost never give out my real email to anyone other than a human I know in the real world.
@vkc Same! Well, not a service, just wildcard aliases. Although I use hyphens in mine and occasionally sites roll their own validation code and decide hyphens aren't valid
Surprisingly enough, forwarding RFC5322 to customer service usually helps! LolHonestly what I've learned is that most sites -- at least the ones I use -- are fine. Got a wave of spam from friggin Patreon when they got breached years ago...and I now filter out any ActionNetwork links from my feed on here...but that's basically all I've had an issue with in the >10 years I've been doing this.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @404mediaco
Same here. I thought I was the only one. -
@dacmot I routinely use RSS but not on every device, frequently enough I come across a link organically and run into these messes!
@vkc @dacmot I'm a government contractor. I have a new project in the last few months where we moved our Issues and Git repos into the government client's [Brand Name] cloud project management.
Now every time I want to look at an Issue, if I haven't touched the issue database for 6 hours, I have to CLICK a BUTTON after password login, to SEND a one-time password via email, then go get that code.
I have so many "Mordac, the Preventer of Information Services" situations! It's maddening!
-
@vkc @404mediaco I also complained about it to them before. Hopefully your voice carries more weight.
Like..... some of us have good passwoord hygene and have password managers and such...
Magic links are great... but as an option. Not if they're mandatory@thibaultmol @vkc @404mediaco This also breaks #wallabag for me, as it cannot auto login and retrieve articles.
@404mediaco @wallabag -
@admin I use a service to generate fake emails for this sort of thing, it's awesome! I can always tell *exactly* who sold my email to folks, or where email leaks came from.
I almost never give out my real email to anyone other than a human I know in the real world.
-
I love you @404mediaco, but I really wish I had a password auth instead of the whole "email you a magic link" thing every time I sign in.
As someone who deletes all cookies daily across a half dozen devices, it adds a bunch of friction.
@vkc @404mediaco A service I use occasionally *migrated* to this from good ol' fashioned passwords. It was exasperating.
-
@vkc Same! Well, not a service, just wildcard aliases. Although I use hyphens in mine and occasionally sites roll their own validation code and decide hyphens aren't valid
Surprisingly enough, forwarding RFC5322 to customer service usually helps! LolHonestly what I've learned is that most sites -- at least the ones I use -- are fine. Got a wave of spam from friggin Patreon when they got breached years ago...and I now filter out any ActionNetwork links from my feed on here...but that's basically all I've had an issue with in the >10 years I've been doing this.
@admin @vkc Are you using ++ aliases or something that allow you to generate aliases from a common base, making less obvious your real address ?
I was wondering if there was a way to generate indistinct e mail address on the fly different than using a domain name. I think that using a domain name is a good solution but it makes it easy to correlate my addresses to my real identity no ?