HackerOne users: Testing against this community violates our program's Terms of Service and will result in your bounty being denied.
Require email verification on email change
Anonymoose
✭✭
Suggestion: Require email verification when user changes their own email address in profile. This avoids letting the user put in a bogus email.
2
Comments
You could require a second email address and have the user verify that email with a link inside the email.
❌ ✊ ♥. ¸. ••. ¸♥¸. ••. ¸♥ ✊ ❌
Right. That's exactly it.