I believe the biggest hurdle to Cryto adoption is lack of “Forgot Password” feature. People cannot grasp the concept of being solely responsible for their funds. Also people are stupid and keeps loosing their password. I was not expecting Nash to have “Forgot Password” since it is a DEX. I was pleasantly surprised when I saw “Forgot Password” link in login page.
With this, I have a concern as well. If an Email account is compromised and two factor authentication is not enabled, then in such a scenario, the attacker can change password and gain access to the account and funds. Wont this make the exchange vulnerable?
In what scenario does a person loose access to his / her funds?
I believe you have to have your private key to your wallet to reinstate your account password. So mere email hack wouldn’t complete the security breach.
Yes, you need to provide the seed phrase to change your password if you forgot it. The system wouldn’t work otherwise since we do not have access to the private keys / seed phrase.