jeroensangers
jeroensangers

I just created an account at an online store and immediately received a confirmation email including my username and password in plain text!

Right away I lowered my expectations on privacy, support and quality.

|
Embed
maique
maique

@jeroensangers I’m amazed they still do this.

|
Embed
jeroensangers
jeroensangers

@gr36 The GDPR only considers how personal data is stored. I don’t think there is any mention of how to communicate a password…

|
Embed
jeroensangers
jeroensangers

@gr36 True

|
Embed
pimoore
pimoore

@jeroensangers that’s an instant account deletion anytime I see that, which fortunately has been ages since I last did.

|
Embed
jeroensangers
jeroensangers

@pimoore I prefer to wait until my order has arrived (since of course I did not see this while I created my account to place the order).

|
Embed
In reply to
pimoore
pimoore

@jeroensangers hopefully their payment system isn’t a security red flag that their account management is.

|
Embed
jeroensangers
jeroensangers

@pimoore No, they use an external payment processor using the default interface of my bank. As far as I can tell, they don’t have access to my credit card information.

|
Embed
pimoore
pimoore

@jeroensangers If it goes through your bank system I wouldn’t think they’d have access to the card info, as it’s likely just doing a handoff of their account information to your bank to do a funds transfer back.

|
Embed