On Wednesday, August 6, 2003, at 10:46 AM, Scott Cadillac wrote:
After sending my post, and thinking about it....
I suppose my answer is probably not right, that the old UserReference is
reused for a new session.
In theory, if 10 different people all clicked on the same Search page links,
which all had the same UserReference key value - and the old key IS reused
for the new session(s) - then 10 people could be sharing the same User
variables. Not good.
that is precisely my concern. A bot catalogues a userreferece variable. It doesn't go to secure pages or enter in any personalization, so no big deal. Someone hits a link created by the bot in a search engine and presto, they're on the same user variable. If they create variables with personal information, then anyone following them may inherit those variables.
________________________________________________________________________ TO UNSUBSCRIBE: Go to http://www.witango.com/maillist.taf
