Quote:
Originally Posted by delicjous
As Wayne mentioned anywhere you should use the mobile-API including an API-Key!
API=> user -> saveEmailPassword
For security reasons you should not use your scripts on any live forum.
Not that I will say it is unsafe, but changing an email by give users the ability to write anything to the user->email field (even non email-strings) is not the best idea!
|
Giving anyone other than a trusted administrator the ability to write anything to the database is asking for trouble. One typo from a well-intentioned user can cause an unmitigated disaster.