Tuesday, December 11, 2018

Web site design gaffs

I predict this blog will grow and grow and grow...

So I was signing up on Aetna for my insurance and encountered the following screen:



See anything wrong with that?  

So I'm allowed to view my password - but not allowed to view the answer to my security question?

How does that make any sense?  They are both important data fields, the password you have to retype to ensure you entered it right.  But the security answer, nope, one chance to enter it right and no way to check that you haven't made a typo.

Reinforces my conclusion that a majority of web developers never actually use the sites they build, they only write them to someone else's spec and move on...


Monday, December 3, 2018

Apparently, no one at 53rd uses 53rd online banking

So my mother in law has a 53rd bank account and we setup online banking for it.
They recently instituted a requirement to 'register' devices when logging into the account, both for the web and the android app.  No problem, I'm familiar with 2 factor authentication etc.
So the prompt you get is like this:



xxxx6 is my home number where I happened to be at the time so that's what I selected.

Five (5) minutes goes by - no phone call with the code.... 

Could it be??? Do they assume every phone number given to them is a mobile number???

YES, they do!  No where on the page does it mention that the mechanism to send the code is a Text Message to a Mobile Phone!

By the way, they do record a label on each phone number on the profile and they are marked correctly, one is marked Mobile, the other marked Home.  Their programmer is so out of touch with reality that he/she sent a text message to a landline.

But wait, it gets better.  

So I decide to send them a note about it.  Go to the Contact Us Page which displays this:
You click Continue, it takes you to the Login page, you Login, it displays the Register Device page, 


click Not Now, it goes to your account overview page - no where to send a message!!!
Another Black Hole.

Amazing!  Apparently no one on the programming team uses 53rd online banking.