just to get it out of the way: yes, i know i can use a spam email/phone number. yes, i know i can opt out of promotional emails/texts. that doesn’t make it any less frustrating. i don’t need a growing list of empty accounts for websites i only spend an hour (or less) browsing through. don’t even get me started on restaurants that ask for your phone number when you scan their QR code…


That is the laziest auth method I’ve seen. At least it’s encrypted in transit though. I’ll take that over the SMS, not-really-2fa crap that US banks refuse to give up though.