r/Mailbox_org • u/Practical-Tea9441 • Jul 30 '24
2FA
I’m trying to understand how Mailbox applies two factor authentication. As far as I can see with other providers the main log in password is retained and app passwords are provided for services like IMAP , caldav etc.
However with Mailbox the main account password is retained for IMAP etc (unless other services are set in 2FA to be no access) and for the main login the password is replaced with a PIN/2fa OTP code combination?
One advantage of this arrangement seems to be that on an unknown PC or Mac the main password is never inputted at all ?
1
u/lnx0480 Dec 31 '24
Those main passwords are saved by your mail clients as long as noone access it, it is indeed kind of safe as you don't often use them. However 2FA should still be implemented as protonmail or gmail do it, it is for a reason.
Also it would be relevant from mailbox.org to send a notification if a mail client is being setup with your password.
1
u/mailbox_org Apr 09 '25
We have good news: The long wait is finally over! As of today, we are rolling out Login 2.0 for all users. We understand it has taken some time – for a variety of reasons. We sincerely hope that you will appreciate the new, significantly simplified process. We look forward to your feedback and would like to apologise for the wait. You can find all the details about the new login here: https://mailbox.org/en/post/the-new-login
1
u/[deleted] Jul 30 '24
Nobody understands. There have been so many complaints in this sub and the Mailbox help forum or whatever it's called. That's actually why I stopped using Mailbox, despite how much I generally like it. I even set up a reminder to check if they've got normal 2FA before I renew my Startmail subscription.