A mailing list I'm on is using Mailman. Which stores your password in plain text (and will email it back to you).
This is clearly rubbish. Any suggestions for better free/open software that I can recommend?
Original post on Dreamwidth - there are
(
Read more... )
Comments 11
Apart from mailman, there is sympa, which is aimed at university-type deployments (eg support for driving lists from ldap), and various packages that are half-finished or undocumented or ancient, like majordomo or mj2. And then there are the packages aimed at marketing bulk mail.
I don't know if mailman 3 fixes egregious misfeatures like its password reminders...
Reply
Reply
(Though to be pedantic, mailman was the late 1990s fix for majordomo.)
Reply
Reply
OTOH, how bad is the Mailman plaintext "Oh look, it's the first of the month, I get email from mailman installs" behaviour? So yeah, it tells you "if you want to unsubscribe / switch from normal to digest mode, here's how". If you pay any attention to the mailing list, you'd notice the change, and you'd have to have a mitm attack in the first place to be vulnerable.
Reply
Reply
Reply
Leave a comment