lichess.org
Donate

Account Safety on Lichess (and Beyond)

Please list email providers that keep our mails safe.
this is quite a coincidence, since Moonrising was hacked today/recently..
Please explain why someone would be interested to steal someone else account on lichess. Stealing the points?
One concern I have with Lichess is that it does not support Two-Factor Security authentication code via email.

For example Steam, Origin, Ubisoft, GOG and most email providers like Yahoo and Hotmail including Facebook will either send you a text message code to your phone or to your email address to verify that you are the owner.

Lichess only has Two-Factor Security as a Google Android or iOS application. But in my case I have a Microsoft Lumia Device, which means that this application is not supported for a Microsoft phone.

This is why I cannot use Two-Factor Security with the application and I am only reliant on my password being sufficiently strong enough and different from all my other accounts.

Also Lichess doesn't give you information on failed login attempts, it only gives you a history of logged on devices with an option to revoke suspicious sessions. But this is kinda futile because if someone did have access and changed your password then they would've stolen your account.

Lichess should include email or mobile text message authentication code as an option for increased security. And perhaps disable username as a login and only login with your email address, that way no one will know your email address and it is harder for someone to hack our account.

This topic has been archived and can no longer be replied to.