cancel
Showing results for 
Search instead for 
Did you mean: 

Gravatars Can Leak Users Email Addresses - Should i complete my profile in SQLA?

Former Member
2,356

Gravatar service is being used here during registration process. And todays slashdot article says Gravatars Can Leak Users' Email Addresses, stopping me from updating my profile. Is it ok to update email address in my profile, what do you think?

Accepted Solutions (1)

Accepted Solutions (1)

Breck_Carter
Participant

Here is my response to an email I got from unknown (google) yesterday, on this subject [with names edited for privacy]...

Thanks for your email!

The article about hacking email addresses on stackoverflow says this: "If a user named paul registers as john@some.domain then this approach doesn't work." In your case, there doesn't seem to be any obvious path from your actual names [Name] and [LongerName], and your email address "SomewhatScrambledName@BigNameEmailProvider.com"... so you may be safe.

And... what's the worst that can happen if someone discovers your email address? Some more spam? ...sometimes, spam can be FUN: http://centerconsole.blogspot.com/2009/12/united-state-fbi.html

Anyway, it's all up to you, there's no requirement to fill in your profile.

BTW if you want to post that link to the slashdot article on SQLA, go ahead! Other people may be interested.

Breck

Answers (2)

Answers (2)

reimer_pods
Participant

For registration purposes in most cases I use a "dirty mail" account, where I check messages for confirmation of my address. For "real" mail I have another account (with appropriate spam filtering).

So either way, I don't think an email address is such a confidential thing that I wouldn't want to use it here.

Former Member
0 Kudos

You could simply replace the Gravatar image with another image of your choice.

Bonus marks for using someone else's Gravatar.