GitHub, the premier code-hosting platform owned by Microsoft, has discreetly implemented a ban preventing the creation of new accounts utilizing Microsoft’s own Outlook and Hotmail email addresses. Fortunately, users possessing pre-existing accounts registered with these domains can continue utilizing the platform without interruption. However, if a prospective user currently attempts to register a fresh account employing either an Outlook or Hotmail suffix, the system will abruptly present an error. Specifically, the error will state that the email address cannot be verified.
The Rationale Behind the Prohibition: Combating Abuse
While the GitHub registration process incorporates notably stringent security verifications, various black-hat and grey-hat syndicates preferentially utilize Microsoft’s Outlook and Hotmail services to mass-generate accounts. These specific email domains inherently possess exceptional brand reputation and trust. Consequently, the vast majority of digital platforms rarely intercept registrations originating from major providers like Gmail, Outlook, or Hotmail. Instead, security systems tend to aggressively scrutinize or block obscure, custom-domain email addresses.
Therefore, for GitHub to institute a blanket ban on both Outlook and Hotmail, the recent volume of malicious activity must have profoundly breached the platform’s tolerance threshold. Although completely disabling registrations from these ubiquitous domains will undeniably inconvenience a massive cohort of legitimate users, GitHub felt compelled to prioritize platform integrity. They have decisively chosen to prohibit new account creation via Outlook and Hotmail. Currently, they have not provided any estimated timeline for restoring this functionality.
GitHub’s Official Stance and Ongoing Security Assessment
According to their official statement, GitHub decisively suspended new registrations utilizing Outlook and Hotmail domains immediately following the detection of persistent, highly organized fraudulent and abusive activities. These activities are inextricably linked to these specific email services. They emphatically reiterate that existing accounts remain entirely unaffected by this policy change. GitHub strongly advises prospective users to utilize alternative, supported email providers for registration. For those interested in the ongoing community dialogue regarding this issue, you can follow the related GitHub community discussion concerning email verification errors. Furthermore, GitHub maintains that it will continuously evaluate its security posture. The platform strives to achieve a delicate balance between providing secure, frictionless access for legitimate developers and aggressively preventing systemic abuse.
Support Our Threat Intelligence
Find our tech and OS security coverage helpful? Support our work today and unlock a 100% ad-free reading experience!