How about an option where the user enters their credentials once per day (or however often they like), directly feeding the polling process, so that their credentials aren't stored?
IANASE[1], but this seems a lot less secure than letting them keep track of your credentials. It seems like an open invitation for man-in-the-middle and phishing attacks. Training your users to (thoughtlessly) enter their credentials over and over seems like a really bad idea.
Comments
How about an option where the user enters their credentials once per day (or however often they like), directly feeding the polling process, so that their credentials aren't stored?
IANASE[1], but this seems a lot less secure than letting them keep track of your credentials. It seems like an open invitation for man-in-the-middle and phishing attacks. Training your users to (thoughtlessly) enter their credentials over and over seems like a really bad idea.
[1] I Am Not a Security Expert
You'd still have to trust their server with your gmail password