tg
tg copied to clipboard
Users need to be informed of successful logins
Description
As part of further improvements to authentication management, it is proposed to implement a step whereby users get a notification email upon successful logins. Each time when a users successfully logs into the application an email of that fact should be sent to the user's email address. Similar to this approach is used by many online services, including Gmail, to remedy unauthorised access situations.
Expected outcome
Further improved user authentication management.
Due to the use of SSO, the scope and impact of this issue is not clear and requires further consideration.