Discussions
Join the NetSuite community to innovate, connect, and discover what’s next.
SuiteWorld brings thousands of innovators, builders, and leaders together to learn, connect, and shape what’s next. This October, explore how to build a stronger foundation for growth through inspiring keynotes, major product reveals, hands-on sessions, and unforgettable moments—all in one place for our biggest event of the year. Register now
Sharing logins across netsuite hosted domains - not good
We ran into a discovery today that is very concerning. An employee of ours was testing our customer center and entered his email address and normal password he uses and when he logged in noticed he had a customer center from another company in his list of accessible centers.
I know there are discreet ways to avoid this, but even that still has the chance of having problems specifically if you want to allow customers to change their email or password in the center preferences.
As Netsuite grows in popularity, this may become quite common since Netsuite relies on the email address as the login. This is no longer a unique id since it is reasonable that a customer of multiple NetSuite-based companies will have the same email address used.