Hacker News new | ask | show | jobs
by soulshake 4464 days ago
This is really good advice. Some additional things that come to mind regarding domains: - enable 2-factor authentication/IP-based login restriction, - disable password reset via email, - provide valid registrant data, in case you ever have to prove your identity - for the extra cautious, contact the provider and ask them to add a note to your file to be extra wary of any requests.
1 comments

Hey, I'm with Gandi and only after this thread did I realise you offered 2FA. I would have enabled much sooner had a i known it was available.

I know you guys don't often send out emails (and I really appreciate that), but perhaps a mail shot letting people know it's an option would be worthwhile. For security stuff I'm happy to receive unsolicited emails

Hmm, that's a good idea. I'll see what we can do. Thanks :)