Postby josh » Thu Sep 11, 2014 9:19 pm

As is probably obvious, the spamgourmet web code was written in a previous epoch, and by someone with no real web design skills - aesthetics aside, it's also worth point out that it covers things at a somewhat lower level than more modern template systems. This has been good in that we've been insulated from the need for web infrastructure updates and from widespread bugs and security holes.

But the downside is that we don't automatically get things like two-factor authentication when they get implemented in the bigger packages.

So - can anyone propose a way to implement two-factor auth (and a more secure approach to pw recovery)?
