Discord Anti Hack "SIgnal" Account System Idea
I've been reading a lot about how Discord support is very slow when it comes to handling hacked accounts issues. A few days ago, I also unfortunately got to experience it on my own and I thought about a solution to this problem.
First thing that I took into the consideration was what sort of hack it is - a "hijacking". Basically a person changes the account password while the email remains the same. That being said, in most cases, people still have control over their emails.
What I came up with is a "Signal" functionality. When your account password has been changed, you get an email from Discord notifying you about it. In this email, there is this potion of text:
"If this wasn't done by you, please immediately reset the password to your Discord account following the steps in this link: ..."
but this only works if you are logged into your account. What should be added is something along the lines of: "Are you not able to log into your account? Try sending a signal by clicking on this link: ...".
Sending a signal would only be possible through the email that the account is connected to. If the link is clicked, it leads you to a page where a code is generated, while on the app, a 60 second timer appears over the entire UI where it demands for the code. If the code is not entered, the account reverts back to the previous password and all of the login locations need to be approved again. This makes it easy for the user to take control of his/her account again without going through the support system.
Iniciar sesión para dejar un comentario.
Comentarios
0 comentarios