• 0 Posts
  • 11 Comments
Joined 1 year ago
cake
Cake day: July 5th, 2023

help-circle
  • the web page essentially accuses me of being a criminal and asks for my bank records. No way in hell.

    Yeah don’t bother doing that. All that will accomplish is them gathering even more information on you, they rarely/never actually unlock your account & let you use it again. You’ve been permanently blacklisted on their service, just move on. And honestly you don’t need Paypal anyway.

    Similar stupid thing happened to me too I think about 10-15 years ago, I was using virtual credit card numbers that my credit card company was generating for me & Paypal thought that was suspicious enough to close my account & permanently blacklist me LOL.

    Fun fact: I did learn over the years that I can temporarily create new Paypal account(s) as long as I don’t use the same mailing/billing addresses or credit cards/bank accounts. But then it’s just a waiting game, they usually figure it out eventually and close the Paypal account yet again.











  • Admins yes. But maybe regular users should avoid Lemmy’s 2FA implementation for now (unless they have lots of experience with this).

    With the current implementation it’s way too easy for an average user to attempt to get this set up & get themselves locked out of their own Lemmy account.

    • Lemmy doesn’t display a QR code like every other website/app using 2FA
    • Lemmy doesn’t force the user to successfully test that the 2FA is working before saving the changes
    • Lemmy doesn’t give the user any backup codes, unclear what the procedure is if you don’t have a backup code, lose your 2FA device and need to reset
    • Lemmy’s 2FA implementation is SHA256, not all 2FA apps support that (e.g. I tried adding this to both Google Authenticator and andOTP and came out with 2 different 2FA codes, maybe because Google’s app doesn’t support SHA256)

    In the end I got nervous & was unsure which if any of my apps were working with Lemmy’s 2FA so disabled it for now. It’ll get better in a future update, just saying be careful going through the current setup.