[Mailman-Users] Users being unsubscribed without requesting it.

John Levine johnl at taugh.com
Mon Aug 21 19:32:50 EDT 2017


In article <7e0bd0e4-b837-4d76-3c14-a0b6dfda982b at tnetconsulting.net> you write:
>-=-=-=-=-=-
>-=-=-=-=-=-
>
>On 08/21/2017 02:08 PM, John Levine wrote:
>> which defines a one-click opt-out link that uses POST rather than GET,
>> since the URL malware fetchers all do GETs.
>
>Why do single click?  Why not do confirmed?

You can read RFC 8058 and find out about the specific problem it addresses.

https://www.rfc-editor.org/info/rfc8058

R's,
John


More information about the Mailman-Users mailing list