Exposing email addresses a privacy concern

Xavier Shay's Avatar

Xavier Shay

02 Feb, 2009 04:39 PM

people don't like having their email address displayed for all to see (see attached for just one example)

this is a really big problem using SSO - people have chosen not to reveal their email address anywhere else on our site. I presume the same is true of other sites using tender.


  1. 1 Posted by Bill Zeller on 03 Feb, 2009 02:08 AM

    Bill Zeller's Avatar

    This is a make or break issue for me as well. Also, could I have a link to your TOS about the email addresses you get in our use of the system? We take our user's privacy extremely seriously and want to be able to know that their data (email addresses) is protected when in your hands.

  2. Support Staff 2 Posted by Courtenay on 03 Feb, 2009 02:09 AM

    Courtenay's Avatar

    OK, we'll address this ASAP.

  3. 3 Posted by rick on 03 Feb, 2009 04:42 PM

    rick's Avatar

    We need something to be displayed, otherwise people that don't specify a name will just have a blank.

  4. 4 Posted by Xavier Shay on 03 Feb, 2009 04:45 PM

    Xavier Shay's Avatar

    Display email address to support staff only, "Anonymous" to other punters if no name specified.


    In many cases, a "Display Name" could be provided via SSO.

  5. 5 Posted by rick on 03 Feb, 2009 04:54 PM

    rick's Avatar

    Okay, I'll change it to just the first part of the email address. "rick (anonymous)". We already show the actual email address to the supporters. And I'll add support for tender_name. We also have some other supporter-only options coming for external_id and external_url. This way you'll be able to provide a direct link to an internal user admin if you wanted.

  6. 6 Posted by Xavier Shay on 03 Feb, 2009 04:55 PM

    Xavier Shay's Avatar

    ace, that sounds good

  7. 7 Posted by Bill Zeller on 03 Feb, 2009 05:29 PM

    Bill Zeller's Avatar

    This works for me, as long as tender_name is authenticated (by added it to the hmac).

  8. 8 Posted by rick on 04 Feb, 2009 09:09 AM

    rick's Avatar

    tender_name isn't used yet, but will be. So go ahead and start using it. I've tweaked this so that the email domain isn't shown anymore.

  9. rick closed this discussion on 04 Feb, 2009 09:09 AM.

  10. Courtenay re-opened this discussion on 06 Feb, 2009 09:42 AM

  11. Support Staff 9 Posted by Courtenay on 06 Feb, 2009 09:42 AM

    Courtenay's Avatar

    We just deployed tender_name and it's part of the hmac. When you sign your URL, please sign the string "host/email/expires/name". The old way will still work.

  12. Support Staff 10 Posted by Courtenay on 06 Feb, 2009 09:57 AM

    Courtenay's Avatar

    Make sure you're using the latest tender_multipass if you want to set the name. For now the code is in my fork.


Discussions are closed to public comments.
If you need help with Tender please start a new discussion.

Keyboard shortcuts


? Show this help
ESC Blurs the current field

Comment Form

r Focus the comment reply box
^ + ↩ Submit the comment

You can use Command ⌘ instead of Control ^ on Mac

Recent Discussions

05 Dec, 2019 01:11 AM
22 Nov, 2019 01:04 PM
14 Oct, 2019 04:05 AM
14 Oct, 2019 12:43 AM
21 Sep, 2019 02:33 PM