Ideas

Prevent Family Members Changing Contact Info for Elevated Profile Protection Levels

Prevent Family Members Changing Contact Info for Elevated Profile Protection Levels

Security Started

While you can disable duplicate checking and account hijacking for the security roles of your choosing, the suggestion is to only disable that process for elevated and extreme profile protection levels. From the My Account page you can change contact information for family members. So if a spouse or child has a Rock account and their profile protection level is not one that duplicate checking is disabled, their accounts are vulnerable to hijacking via event and group registrations. Once you have gained access to their account you can then edit the contact information for the person with elevated access and now reset their login so you have access to their account as well.

I believe any profile levels that you have disabled duplicate checking for should also be prevented from having their contact information changed by a family member via the My Account page.

Photo of Courtney CookseySubmitted by Courtney Cooksey, The Crossing (Columbia, MO)  ·   ·  Security
Started
Ministry Strength 1 / 5
Login to add a comment...

Submission Success Tips

Cultivate your ideas for maximum impact with these helpful submission tips that will increase the chances of your brilliant concepts becoming reality.

  • Clear Title: Craft a straightforward and descriptive title that instantly conveys the essence of your idea.
  • Concise Description: Provide an idea description that is succinct, ensuring it effectively communicates the concept without unnecessary verbosity.
  • Provide Additional Details: With a concise description complete, now provide any other details that are needed to better understand the requirements.
  • Thorough Ministry Need Review: Provide a comprehensive overview of the ministry need your idea addresses, emphasizing its significance.
  • Cover the WHY: Clearly articulate the rationale behind your idea, explaining why it's essential and how it aligns with the organization's goals and mission. Oftentimes a clear "why" sheds light into other possible options.