systopia / de.systopia.newsletter

CiviCRM Extension to facilitate newsletter signups
GNU Affero General Public License v3.0
2 stars 2 forks source link

Don't use contact hash #11

Closed bjendres closed 1 year ago

bjendres commented 3 years ago

Instead of CiviCRM's contact hash, you should be using CiviCRM's checksum, see e.g. HERE.

Since CiviCRM's contact hash doesn't change or expire, it's unwise to send it out as-is.

jensschuppe commented 3 years ago

I'd really like to implement this before a stable 1.0, i.e. this is a blocker for a stable 1.0 release.