Do Xenforo have any plans to remove this?
It's an old forum and we have reasons to believe that many of our long-time members doesn't know which email address they used when registering. It can be an email provider that got extinct 20 years ago.But above all, what does it change for you since users are shown with their username?
I agree. I never understood why Ips removed that option. It didn't make much sense to me.With 100k+ users it might not be just a simple job. Better to keep username login as an option.
With 100k+ users it might not be just a simple job. Better to keep username login as an option.
I agree. I never understood why Ips removed that option. It didn't make much sense to me.
That looks like security through obscurity to me.Email is used to strengthen security because usernames are public while emails are not. In fact, it is becoming common practice for most websites and apps to require logins only with email or phone number.
Probably you don't have experience with running a forum that lasts back to the beginning of the century.Even if there were 10,000, how many of these users won't remember their email address? 1,000? Do you realize you're worrying about a problem that doesn't exist?
Email is used to strengthen security because usernames are public while emails are not.
This. Someone's email or phone number is generally not that difficult to obtain with a fairly simple phishing attack. Makes a bit more work, sure, but in age when phishers, hackers and spammers can use AI agents to build and manage their attacks, probably not a lot more.That looks like security through obscurity to me.
I would suggest if you do migrate, start announcing it early, and have users update their email beforehand. Just in case some users need a password reset.Many thanks Slavik!
It's an old forum and we have reasons to believe that many of our long-time members doesn't know which email address they used when registering. It can be an email provider that got extinct 20 years ago.
In 25 years we are not aware on any account hijacking so in respect to security email-only login has no advantages for us, only disadvantages.
We use essential cookies to make this site work, and optional cookies to enhance your experience.