Discussion Forum: All Replies to Message 1440322

 Author: cosmicray View Messages Posted By cosmicray
 Posted: Nov 21, 2023 18:54
 Subject: Re: Introducing One-Time Pin
 Viewed: 97 times
 Topic: Administrative
Cancel Message
Cancel
Reply to Message
Reply
BrickLink
ID Card

cosmicray (3498)

Location:  USA, Florida
Member Since Contact Type Status Collage
Oct 1, 2000 Contact Member Seller
Buying Privileges - OKSelling Privileges - OK
View Collage Pic
Store Closed Store: Cosmic Toys
In Administrative, CE_Uday writes:
  Dear BrickLink Members,

Thank you for your patience as we recover from the recent incident.

We’re introducing One-Time PIN (OTP) functionality to certain seller features.
This feature is only accessible to sellers and is an opt-in feature, however,
it is highly recommended.

To activate OTP, you must go to your store management settings: https://www.bricklink.com/v2/mystore/management.page

OTPs will be sent to the email address associated with your BrickLink account.
One verification code lasts for 60 days on a single machine ID (one browser on
a specific device). This verification process should not impact integrations
with third-party inventory managers.

Please read our FAQs for more information about how OTP works and which features
it protects: https://www.bricklink.com/help.asp?helpID=2615

Many thanks,
The BrickLink Team

My first reactions is that the OTP is being tied to an email account. If I then
tie the email account to a 2FA SMS based authentication (similar to what BL is
doing with OTP) that would make it very difficult for anyone to breach both the
email and BL. Tie all that together with strong passwords.

Thanks for a job well done !

Nita Rae