Simon Willison’s Weblog

Subscribe

1 item tagged “signin”

2008

8 More Design Mistakes with Account Sign-in (via) Second of a two part series by Jared Spool. I agree with all of them with the possible exception of #15 which advocates providing a non-email password recovery solution. Security “questions” are usually dreadfully insecure, and introduce the need to lock users out of their accounts after just a few tries. # 17th January 2008, 4:35 pm