Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You’re training users to click a “you have a notification” email that’s not easy to verify is legit.


You're training users to not click a link in an email, but rather log in from your homepage.


It has a big “click here” button - at least this email did.

Yea better is to tell them to go login and provide no links.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: