View Single Post
Old 02-05-2019, 10:48 PM  
Konda
...
 
Konda's Avatar
 
Industry Role:
Join Date: Apr 2003
Posts: 2,280
Quote:
Originally Posted by Bladewire View Post
HaveIBeenPwned keeps subscribers emails after they unsubscribe via SendGrid and SendGrid TOS specifically authorizes them to share data to 3rd parties.

Inconvenient facts for your agenda

Sendgrid blurts out OWN customers' email addresses with no help from hackers

SendGrid admits hack, says all customers must reset their passwords

You've got a solid boner for Troy Hunt because you are both Australian but facts are facts

SendGrid: Employee Account Hacked, Used to Steal Customer Credentials — Krebs on Security
Although I don't agree with most of your posts I did honestly think you were smarter than this.

What does SendGird has to do with the way HaveIBeenPwned works.

HaveIBeenPwned only uses SendGrid as their outgoing mail provider for the people that subscribe to get notifications when a new breach is found.

SendGrid is a service that you can use to send out your emails to have better deliverability, we also use them for our emails to customers that subscribe to our sites so that it doesn't end up in their spam folder and so do some of the world's biggest online companies like Uber, Spotify, AirBnB.

SendGrid does not (and can not) send out emails to your lists nor sell it to third parties. The part of the terms you referred to in an earlier post mentions they can only use unidentifiable data (for example like how many emails are being send, how many emails to certain providers etc.).

The hacks you refer to above are about their b2c clients, nothing to do with end users' email addresses. It's a huge company that had some hacks in the past, just like most other big online companies experience at some point. It has nothing to do with HaveIBeenPwned or the way they work.
Konda is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote