- Why is email confirmation not requested during account registration? I have checked that it is possible to open a forum account with an email address that does not exist or has not yet been created.
It's uncommon for a user to register an account with an email that does not exist, the purpose of the email is for account recovery and getting updates about the platform
- Email OTP is not asked during password change. But why the OTP of the current email is not asked even when changing the account email address?
- There is a Secret Question facilities. which is work as a second password. but anyone can remove it after logging in the account without giving any answer or verifying any OTP.
- Where all platforms have 2FA option for their users, why this forum has not put this option in the user account for security reasons.
This will compel us to use the strongest possible password for our account having a 2FA will not motivate us to use a strong password because we will be comfortable in thinking we have a 2FA to rely on in case there is an attempt on our account.
I don't understand why this is not in this forum where everyone including the admin knows these things. And since the forum was created almost 14 years ago, why has this not been done yet? Is there any secret behind it?
We already have the captcha to protect us from hackers, two things that can get your account in trouble and these are not putting the right security in your email and not using a strong password here in Bitcointalk.
If you think your account is very valuable to you then it's your initiative to put the best security in your email where hackers can get a shortcut to get access to your account, and using a strong password, I think Bitcointalk is telling us it's our business to protect our account, so the challenge is with us.