Skip to main content

Godaddy plugs whois privacy hole

Posted in

It seems Godaddy has finally plugged a hole in its whois privacy system which allowed users to see the domain owner's email address domain (ie ****@kevinohashi.com) if they tried to retrieve passwords. Now it requires the user the enter that email address instead of verifying that the asterisked email address is in fact the proper domain associated with the account. I highlighted the fix in the image below. Privacy at Godaddy just got a little bit stronger.