@tsteur opened this Issue on December 13th 2022 Member

Over time, as a user, you may end up with various users in your Matomo Analytics.

Some of them won't actually use it for various reasons, for example because they don't work anymore for the organisation.

From a security perspective, it's always best to then remove these user accounts after a while to reduce the security risk. It reduces the risk because the less users you have in your Matomo, the less chances that an account gets taken over for example because of weak passwords (refs https://github.com/matomo-org/matomo/issues/19961) or not having configured 2FA or many other reasons.

As a super user, I'd want to be notified monthly via email which users haven't used the tool in the last 6 months. Ideally, the number of months is configurable and a super user should also be able to turn this feature off for the entire account.

The email should state why they are receiving this email, what they may consider doing, a list of each user with a direct link to the user management where the search is used to find that user so it's possible to easily delete that user. The email should also explain how to turn off this feature.

Powered by GitHub Issue Mirror