Page MenuHomePhabricator

Prevent Wikimini spammers to register via email, and just allow registration using OAuth
Open, MediumPublic2 Estimated Story Points

Description

Current situation

  • Wikimini has an open registration with anti-spam systems kept online at our best
  • we have not enough time to review every user manually
  • at the time of writing Wikimini has 1.092.614 users with an email (!)

Proposed situation:

  • implement the OAuth login between Wikimini and the Wikimedia wikis (Meta-wiki), so new users just register in Meta-wiki, and then, from Wikimini, they can just quick-register with OAuth

Success criteria

  • Allow new users to register only using the OAuth
  • Allow previous users to just use normal Wikimini username and password

Bonus points - not necessarily involved in this Task time-tracking:

  • help all historical users - who are already registered with normal username and password - to understand that the OAuth button cannot auto-magically work for them. If they want OAuth, they must first login using normal username / password, and then - from their preferences - they just need to click on "link account"

Event Timeline

valerio.bozzolan renamed this task from Prevent Wikimini spammers opening registration only to Wikimedia users to Prevent Wikimini spammers to register via email, and just allow registration using OAuth.
valerio.bozzolan triaged this task as Medium priority.
valerio.bozzolan set the point value for this task to 2.