Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I'm beginning to think that a possible solution is to use an email account entirely different from your primary email for all website registrations.

Which leads me to another idea. If websites supported separate email accounts for messaging and authentiaction/resets and kept the second account name hidden from general public it would (somewhat) help in a lot of cases.

Also, I would be much more likely to do 2FA on more accounts if websites gave me the option to use printed lists of tokens instead of my phone number.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: