Block a user
Cleanup application.css TODOs
Login form should retain password too on bad login
Run password recovery from same form data as sign in
Don't leak registered users' email addresses on "Recover password" and "Resend confirmation"
Don't leak registered users' email addresses on "Recover password" and "Resend confirmation"
Devise.paranoid = true
Rate limit actions causing e-mail sending when user not logged in
UsersTest#test_delete_profile --seed 45657