|
|
|
|
|
by mcculley
2870 days ago
|
|
I interpreted that as "completely anonymous to users". The owners/operators of Blind have the mapping between pseudonyms and email addresses. These will not be available to others until the inevitable data breach or exit (possibly to one of the organizations whose employees use the service). |
|
During the creation process, the user gets the option to set a non-work email for password-recovery etc.
The main risk of this scheme is that a single jdoe@acme.corp could easily create a thousand sock-puppets or "give" new accounts to people who don't work at the same company.
This can be minimized by only allowing a corporate e-mail address to be used once, but that does mean keeping lists of which users in a given company happen to have accounts, even if a direct email-to-account link doesn't exist. (It seems pointless to hash the "already used" emails for privacy, since the search space is so small.)