fission icon indicating copy to clipboard operation
fission copied to clipboard

Account Recovery Email Challenge Flow

Open matheus23 opened this issue 4 years ago • 2 comments

Tracking here that we should at some point define how recovery email sending should work. Resending account recovery emails is desirable because the user might have accidentally deleted the email they got/it landed in some kind of spam folder/they can't find it anymore.

According to @bmann there's going to be some state tracking involved in the account recovery flow in general:

There’s some state here “Recovery Email Sent with handshake code X, Email clicked on / received, Recovery Complete / one BLS key burned” Because future, like OTP resets you might have multiple BLS codes

Ideally we define flows around this.

matheus23 avatar Jun 17 '21 14:06 matheus23

Haha. Well “according to bmann” that’s just what I thought of on the fly ;)

Thanks for capturing.

bmann avatar Jun 17 '21 14:06 bmann

@therealjeffg

matheus23 avatar Jun 17 '21 15:06 matheus23