Making payments and seeing credit card information should require your password

टिप्पणियां

1 टिप्पणी

  • srnyx

    This needs to be added.

    This is a serious issue with Discord safety. If someone gets your token (very easy to do, surprisingly), they can just go to User Settings > Billing and click Edit on any payment method to get all of the user's information.

    This can include their FULL NAME and EXACT ADDRESS. I also don't think it requires a password/2FA code to purchase gifts/Nitrob/boosts. This means the hacker can just buy themselves Nitro using the victim's money.

    This is honestly just extremely dumb and no idea why it hasn't been fixed yet. It's a huge security flaw and makes me feel extremely unsafe, especially given the fact I see tons of accounts hacked every day.

    0

कृपया टिप्पणी करने के लिए साइन इन करें करें.