Forum OpenACS Q&A: Re: RFC: Security policy for OpenACS (Security hole in OpenACS 5.1!)

Perhaps running as root is a bad analogy but if someone sends me a link saying I found a bug on your site at

http://mysite.com/acs-admin/users/nuke-user?user_id=myuserid

it would be nice if I had to at least login before it did it. Anyway the more barriers that keep dumb stuff from happing the better. I don't want to go back to lynx to surf the web.