Author |
Thread Statistics | Show CCP posts - 1 post(s) |

Sir Substance
GoonWaffe Goonswarm Federation
681
|
Posted - 2015.02.15 01:30:42 -
[1] - Quote
Malcanis wrote: I don't know what else you thought full API meant? TBH this is pretty common knowledge, and given that GMs can also read your evemails, I can't think why anyone would ever put anything personal into one.
I donno man, with 7.5 years in this game that never occurred to me. Now you mention it, I'm not surprised in the least, but it's one of those things that has to cross your mind before you consider it, and until now it hadn't crossed my mind.
I do feel like it's something that should have an explicit warning on the API creation page. Maybe a discreet tag under api keys that give access to mail saying "caution: anyone with this key can read your evemail"?
The beatings will continue until posting improves. -Magnus Cortex
Official Eve Online changelist: Togglable PvP. - Jordanna Bauer
|

Sir Substance
GoonWaffe Goonswarm Federation
681
|
Posted - 2015.02.16 08:54:37 -
[2] - Quote
Indahmawar Fazmarai wrote: That's very smart but please come back to the OP: in 6 years, I did not need to learn of mails and full APIs, and so I didn't learn of it until I accidentally stumbled on that precious little info... 6 years and a few hundred evemails too late.
There are two lessons to be learned from this:
If you are not a UI designer: Pretend that communication sent over the internet is going to end up publically on your facebook page, unless you've encrypted it.
If you are a UI designer: Things which have the potential to do damage should always have attention explicitly drawn to them. Blaming the user is not acceptable design practice.
The beatings will continue until posting improves. -Magnus Cortex
Official Eve Online changelist: Togglable PvP. - Jordanna Bauer
|

Sir Substance
GoonWaffe Goonswarm Federation
682
|
Posted - 2015.02.17 07:20:01 -
[3] - Quote
Glathull wrote: It's true. There's even an API of sorts. If I have someone's email address and password, I can download their email in whatever format I want! The shock!
That's not an API, not even of sorts. API's are designed for digestion by software, not people. Having a login screen is a waste of good clockcycles that's only needed if you're a human who doesn't know the login protocol.
Don't be intellectually dishonest.
The beatings will continue until posting improves. -Magnus Cortex
Official Eve Online changelist: Togglable PvP. - Jordanna Bauer
|
|
|