Either by sending a code to SMS or Email, you are able to sign into your account without ever needing to or being able to add a password. Why has this become a thing recently?

  • Jerkface (any/all)@lemmy.ca
    link
    fedilink
    English
    arrow-up
    4
    ·
    edit-2
    20 hours ago

    You can generate one-time-use email addresses by using the little-know mailbox field of the email address format:

    kepix+you_can_write_anything_here_and_it_will_reach_your_inbox@gmail.com
    

    Obviously this will not fool a human being into thinking you are a different person, but I have never encountered authentication code that treats two mailboxes at the same address to be the same person. This is useful for identifying the source of data breaches, when you start getting phishing attacks at your “kepix+reddit.com@gmail.com” address, and makes it trivial to train your spam/important filters.