@alexertech@mastodon.social
So, a company says that "for security policy" Slack must be enforced to logout every 12 hours and employees need to reauthenticate mandatory. I have worked in at least 4 companies with strong security standards and can't remember an enforcing policy like this in direct message comms. There are way too many other attack surface areas to cover before doing this.Is this a standard I'm missing out or it's just bad policy acting as "secure" and making their employees life's miserable?