Hi all,

Due to the security issue #003 
(http://www.oxidforge.org/wiki/Security_bulletins/2009-003) we had to resolve 
the handling of unregistered users this way:
- when user performs an order for the second time without registration, user 
acount created during first order is deleted preserving order related 
information, and new one account is created.

Unfortunately, some partners claimed about it because they lost remarks 
together with deleted accounts. The details are here:
https://bugs.oxid-esales.com/view.php?id=1441

Before implementing security fix #003, we discussed about how to solve that in 
best way, investigated few solutions, and implemented the best in our opinion.
But we are searching for a convinient way for all sides now to resolve this 
issue. So we would like to get any feedback about other possible solutions, or 
confirmation that current behavior is acceptable for you.

Any of your ideas welcome.


Best regards,
Dainius Bigelis
_______________________________________________
dev-general mailing list
[email protected]
http://dir.gmane.org/gmane.comp.php.oxid.general

Reply via email to