Picto thématique

Rule n° 17 - Account creation is subject to a confirmation process.

To create an account on a website, it is usually necessary to enter an email address. This address can then be used to verify that the person behind the account creation request and the owner of the entered email are the same person. In the absence of such verification, anyone can create an account.

#Privacy #Personal information #Development

Goal

  • Reduce the risk of users being registered without their knowledge.

Implementation

Before activating the account created online, send an automatic confirmation request to the corresponding e-mail address.

Control

Create an online account and check that it is only activated from the confirmation e-mail that follows the sending of the registration form.

By Opquast - Read the license


Discover Opquast training and certification

The objective of these rules and the Opquast community mission is ‘making the web better’ for your customers and for everyone! Opquast rules cover the key major areas of risk that can negatively affect website users such as privacy, ecodesign, accessibility and security.

Opquast training has already allowed over 14,500 web professionals to have their skills certified. Train your teams or your students, contact us