|
|
|
|
|
by mmahemoff
5467 days ago
|
|
Precisely. Doing something like this is always a trade-off, and yes, it might make sense for something like a blogging service (the same way Posterous inbound mail has the small potential to go wrong), so I can see where Hover is coming from. But really, in the case of a domain registrar, wow. If you're administering a domain, you're no longer in "mainstream user" territory. There should really be some minimal set of conditions for domain registrars, with one of them specifying a reasonable security model for password retrieval. |
|