[git send-email] Less secure?

2 messages, 2 authors, 2016-06-16 · open the first message on its own page

[git send-email] Less secure?

From: Neven Sajko <hidden>
Date: 2016-06-16 02:18:58

Gmail by default doesn't allow usage through send-email.
They say that send-email is "less secure" and that enabling it
makes it easier to break into my account.

Is send-email really less secure than the Gmail web browser
interface?


Neven

Re: [git send-email] Less secure?

From: Eric Wong <hidden>
Date: 2016-06-16 02:18:58

Neven Sajko [off-list ref] wrote:
Gmail by default doesn't allow usage through send-email.
They say that send-email is "less secure" and that enabling it
makes it easier to break into my account.

Is send-email really less secure than the Gmail web browser
interface?
Like any email client, git send-email is only as secure as your
own practices.  It can use git's native git-credential system
for handling passwords.

According to the following post from Javier, you will need
an extra password if you have two-factor auth enabled with Gmail:

http://mid.gmane.org/CALZVapn9KjXCpO+zaYuB6RSnG747u4a7e_m_HDg+uH-uz8UhQg@mail.gmail.com

Additionally, since (AFAIK) you can still get multiple Gmail
accounts, there's no reason you need to use your primary email
account (that might be tied to your private/personal life)
for sending patches to a public mailing list.


Disclaimer: I have little experience with Gmail myself and do
not endorse Google (or any corporation).  I just care deeply
about the continued existence of vendor-neutral messaging.
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help