
Since we've had absolutely zero communication from Roll20 about the data breach on June 29th and what they're going to do to prevent yet another, I think we're all due at the barest minimum 3 free months. Right now all I'm seeing is roll20 buying up other companies and working on features to drive more money rather than clean house and actually fix their atrocious security practices. The request for MFA has been the highest requested feature for a long time now. I'm getting the idea that project management there is refusing to put resources to the necessary steps to protect the information of their paying customers and only wants to put resources into things that make money. This incident should cost roll20 money for the mishandling of our data and lack of common basic security measures. Maybe the hit to the wallet will finally be enough to make them implement common best security practices such as MFA. I honestly expect this is going to be completely ignored by roll20, just like they've ignored requests for security for over 5 years now, no matter how many requests they've gotten for it. I figured I'd give this a shot before I decide to pay for Foundry and start playing around with that, because I can at least secure that myself and do a better job than roll20.