
Going Way Beyond 2FA
The OWASP Podcast Series
00:00
The Challenges of Airquote, Legacy or Greenfield?
Gitup did not require email validation until very late in its life span. When you signed up with a email address, we didn't require that you verified it before you could do certain things. It was get up as very like, if you want to be anonymous, that is 100 % supported. But lots of people hadn't used gitu since before they started requiring verified email dresses. So they're coming back to their ccount and saying "I am literally locked out of my account"
Transcript
Play full episode