I did some tests on enabling and disabling 2-step verification in Podio account. In the current set-up, when I clicked the disable button, it already disabled the setup successfully which I think not secured if someone or a hacker did it.
Can your team create a feature receiving a code to the registered number before a user disable it successfully?
As we are all aware, security of a database MUST be a high priority. But upon using the Podio services, I can see that it's really not that secured and has limited scope in security access in workspaces and apps.
Please sign in to leave a comment.