302
Demanding selfie to unsibscribe
(lemm.ee)
Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.
In this community everyone is welcome to post links and discuss topics related to privacy.
much thanks to @gary_host_laptop for the logo design :)
For bypassing 2fa this does seem reasonable. But anyone who can access the email address should have the permission to unsubscribe from messages.
For example on my service there is the concept of a "primary email" which is the only one that can be used to reset the password. But even if you have lost the password and access to your primary email you can still unsubscribe any other email from notifications as long as you can show access to that particular email. You won't regain access to the account but you can turn off emails.
For marketing emails I totally agree.
For important account security and verification emails, no I don't think that should be done without being able to log into the account.
If somebody breaks into your email, they shouldn't be able to compromise everything silently
This is a good point. Maybe you could have some sort of exit plan such as 3 emails confirming that you have been unsubscribed at 1d, 30d and 365d. This way if the email takeover is temporary then the user will eventually see a warning but there is still a finite amount of emails still to be received.
It isn't perfect, because an attacker could set up filters or something so that these aren't noticed. But at this point the attacker could set up a filter to hide the regular account emails so it really isn't any worse.
I think in most cases confirming you own the email should be sufficient to unsubscribe.
In high security situations there should be a more extensive method, but it should still be possible. Perhaps the timed unsubscribe, i.e. a month of access. Or mailing a letter to the account holders address. (I.e. take 4 weeks to give the account holder time to opt out)