Patrick R. Michaud
Tue Jan 20 16:35:55 CST 2009

On Tue, Jan 20, 2009 at 11:19:55PM +0100, kirpi at kirpi.it wrote:
> Yes.
> I "lifted" your point from the other thread as it was a simple way for
> me to offer an example of the reason I opened *this* thread.
> Sorry if that leads to misunderstanding :-)

You quoted me out of context, yes.

> What do you think, please, about the point I exposed starting my thread?

I think I've already answered this in the other thread.
Your point in this new thread was "[PmWiki security access system]
lacks a simple, official way to let people register, have their
email verified, set up a password, have their password reset/emailed
in case it gets forgotten."

I agree with you.  My responses have been:
(1)  any "official way" misses the needs of a significant
     percentage of PmWiki sites
(2)  it's not clear where this additional information should be
     stored -- in the SiteAdmin.AuthUser page directly or in
     individual user profile pages

Until I'm able to see a clearly good decision on this latter point --
that is, until it's clear *where* in PmWiki we will store sensitive
information such as email addresses -- the rest of the discussion
is merely speculation.  At least, it's speculation if I'm expected
to support its inclusion in the core.


