View Issue Details

IDProjectCategoryView StatusLast Update
6140Composrcore_cnspublic2025-01-21 01:56
ReporterPDStig Assigned ToGuest  
PrioritynormalSeverityfeature 
Status newResolutionopen 
Summary6140: Nix the 'Delete own member account' privilege
DescriptionData protection legislation facilitates that users have the right to be forgotten. This means in many jurisdictions such as the EU, it is required that a site provide a method for members to delete their account.

As such, I feel this privilege is inappropriate. All members should always have the ability to delete their account at any time.

However, to address the issues outlined in the tutorial, as part of this feature request, we should also implement a config option allowing the specification of a "delayed deletion". This means, if set, a member who "deletes" their account does not actually get deleted until the specified number of days elapse. And the member can cancel the process simply by logging in again before the days elapse.
Additional InformationI do have a version 11 non-bundled addon which is not published (but could be) which will blocklist members who delete their account. This can prevent moderation loopholes.

E.g. when an account is deleted, another one cannot be created under the same username, e-mail address, or IP address, if the account had any formal warnings or punitive actions on it. Right now, these are logged in plain-text, but I could take the same approach as data/unsubscribe.php and hash the stored values with the site salt.
TagsRoadmap: Over the horizon
Attach Tags
Time estimation (hours)
Sponsorship open

Sponsor

Date Added Member Amount Sponsored

Activities

There are no notes attached to this issue.

Add Note

View Status
Note
Upload Files
Maximum size: 32,768 KiB

Attach files by dragging & dropping, selecting or pasting them.
You are not logged in You are not logged in. This means you will not get any e-mail notifications. And if you reply, we will not know for sure you are the original poster of the issue.

Issue History

Date Modified Username Field Change
2025-01-21 01:49 PDStig New Issue
2025-01-21 01:49 PDStig Tag Attached: Roadmap: Over the horizon
2025-01-21 01:53 PDStig Additional Information Updated
2025-01-21 01:54 PDStig Additional Information Updated
2025-01-21 01:56 PDStig Additional Information Updated