# Discourse excluiu 1500 usuários inativos que não eram vistos há dois anos após a atualização

**URL:** https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995
**Category:** Support
**Created:** [Abril 14, 2019, 10:19am UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995 "2019-04-14T10:19:30Z")
**Posts on this page:** 20
**Page:** 2

<div class="post-metadata">

### Author: ![FoohonPie](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/foohonpie/32/119648_2.png) [@FoohonPie](https://meta.discourse.org/u/FoohonPie)
#### Post date: [Abril 14, 2019, 6:31pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/21 "2019-04-14T18:31:50Z")

</div>

Thank you @jomaxro for your thoughtful and clear response.

The issue that sticks out to me is an assumption about what this data means. My own main use case uses SSO and the Discourse API to merge users between 2 systems. I also have processes outside of Discourse’s view entirely that account for this data, so it strikes me as heavy-handed that Discourse thinks it knows more about the context of my own data than I do.

This is why I wonder why flipping the default wouldn’t make more sense so that we have to opt _in_ to this cleanup functionality. It’s impossible for any Discourse instance to know with 100% certainty that something else isn’t using this data.

> [@jomaxro](#):
>
> However, what is the purpose for keeping this data?

> [@jomaxro](#):
>
> What do you need this data for? Discourse isn’t even emailing this user anymore, why keep information about them?

That should be for for each one of us to decide for ourselves, and opt into its pruning if desired.

As for documentation, I totally understand and appreciate the effort involved to keep up. That’s kind of the point: there are so many changes to detail that it’s also unrealistic to expect all of us to fully understand every single part of a release.

Just as it would nearly be a full-time job to fully document every change, it’s can also be a prohibitively expensive task to comb through every part of every release before upgrading, especially for those of us who run small businesses.

That’s why “Clean up inactive users” feels so surprising as a footnote. It’s painful to miss this detail specifically because it can result in unexpected loss of data. That note seems out of place alongside the 17 other “New Feature” lines that aren’t potentially destructive.

---

<div class="post-metadata">

### Author: ![Stephen](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/stephen/32/95011_2.png) [@Stephen](https://meta.discourse.org/u/Stephen)
#### Post date: [Abril 14, 2019, 6:36pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/22 "2019-04-14T18:36:43Z")

</div>

If you have many users who are only using Discourse for identity, then it’s probably time to deploy an IdM.

This isn’t a technical problem, this change has highlighted a design problem within your environment

---

<div class="post-metadata">

### Author: ![FoohonPie](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/foohonpie/32/119648_2.png) [@FoohonPie](https://meta.discourse.org/u/FoohonPie)
#### Post date: [Abril 14, 2019, 6:44pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/23 "2019-04-14T18:44:45Z")

</div>

You are certainly entitled to an uninformed opinion about the details of my environment.

Regardless, I am still not sure what the harm is in making this feature opt-in. There are clearly several users here who came upon this as an unexpected and unpleasant surprise.

I agree though that this isn’t a technical problem. It’s a release management problem.

---

<div class="post-metadata">

### Author: ![ssvenn](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/ssvenn/32/86740_2.png) [@ssvenn](https://meta.discourse.org/u/ssvenn)
#### Post date: [Abril 14, 2019, 7:44pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/24 "2019-04-14T19:44:00Z")

</div>

I think this is a pretty harmless change all in all, but maybe there could be a framework for presenting new site settings and important changes to the admin on the first visit after an upgrade so they can tweak them before they effect anything? Like a mini version of the first time setup wizard?

Being able to sort the site settings list by “newness” would also be nice to help admins discover all the new features. 🙂

---

<div class="post-metadata">

### Author: ![codinghorror](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/codinghorror/32/110067_2.png) [@codinghorror](https://meta.discourse.org/u/codinghorror)
#### Post date: [Abril 14, 2019, 8:15pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/25 "2019-04-14T20:15:14Z")

</div>

> [@TobyPinder](#):
>
> new default behaviours that result in data destruction

> [@FoohonPie](#):
>
> That’s why “Clean up inactive users” feels so surprising as a footnote. It’s painful to miss this detail specifically because it can result in unexpected loss of data. That note seems out of place alongside the 17 other “New Feature” lines that aren’t potentially destructive.

This isn’t meaningful “data” that is being “lost”, though. As you can see with GDPR and similar, we feel it is more appropriate to stand up for users and the overall health of the web by having a safe default that cleans up old, unused accounts automatically.

> [@codinghorror](#):
>
> A few reasons.
> 
> 1. It leads to artificially inflated stats, “we have 50,000 users” but … _do you?_ If those users haven’t been on your site in more than two years in any meaningful way, either reading or posting, at all, in any capacity whatsoever … are they _really_ users on your site? 🤔
> 2. It’s a form of global digital hygiene; it’s unlikely any user wants an account they don’t use across {x} different websites on the internet. So removing them automatically cleans up their digital footprint with no effort on the user’s part. (GDPR comes to mind, for example.) 🗑
> 3. Dangling unused accounts are potential points of compromise. For every user that re-uses passwords (and so many do), all it takes is one account to be compromised and attackers have a digital skeleton key 🗝 that works on every website that user ever touched.

Regardless, it is a site setting so site owners can tweak it to taste. If you want it to be three, four, or five years instead of two, go for it.

---

<div class="post-metadata">

### Author: ![FoohonPie](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/foohonpie/32/119648_2.png) [@FoohonPie](https://meta.discourse.org/u/FoohonPie)
#### Post date: [Abril 14, 2019, 8:50pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/26 "2019-04-14T20:50:20Z")

</div>

> [@codinghorror](#):
>
> This isn’t meaningful “data” that is being “lost”, though.

It isn’t for you to determine what my data means to me. See my earlier points about that specific assumption.

It is resolved for me now though yes, as I have updated that site setting.

The lingering concern is that I only found out about this by chance through this thread. I might not be so lucky in the future if Discourse sees this whole thing as a non-issue with no opportunity for improvement.

In that regard, @ssvenn’s suggestion seems like a fantastic idea to mitigate similar issues going forward should they pop up.

---

<div class="post-metadata">

### Author: ![codinghorror](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/codinghorror/32/110067_2.png) [@codinghorror](https://meta.discourse.org/u/codinghorror)
#### Post date: [Abril 14, 2019, 9:22pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/27 "2019-04-14T21:22:36Z")

</div>

> [@FoohonPie](#):
>
> It isn’t for you to determine what my data means to me. See my earlier points about that specific assumption.

It also isn’t for you to decide that other people’s data from abandoned, never used accounts belongs unconditionally to you, forever.

---

<div class="post-metadata">

### Author: ![FoohonPie](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/foohonpie/32/119648_2.png) [@FoohonPie](https://meta.discourse.org/u/FoohonPie)
#### Post date: [Abril 14, 2019, 9:36pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/28 "2019-04-14T21:36:53Z")

</div>

I very much agree.

I’m not against this feature by any means. I think it is a great feature. It’s the handling of its rollout that strikes me as revealing an opportunity for improvement.

I don’t think it’s unreasonable to not want to be surprised by something like this.

---

<div class="post-metadata">

### Author: ![ChrisBeach](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/chrisbeach/32/214628_2.png) [@ChrisBeach](https://meta.discourse.org/u/ChrisBeach)
#### Post date: [Abril 14, 2019, 9:51pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/29 "2019-04-14T21:51:25Z")

</div>

> [@Stephen](#):
>
> I’m slightly puzzled why anyone would roll out updates to a client site without reading the release notes and staging them first.

IMO the release notes didn’t draw adequate attention to a destructive change.

Not only that, but many of us update our instances every few days - taking in changes before the official release notes round-up. We cannot feasibly read every git commit comment before hitting the button.

It would be handy for the admin updates page to show any major/breaking changes (or new site settings).

---

<div class="post-metadata">

### Author: ![TobyPinder](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/tobypinder/32/138373_2.png) [@TobyPinder](https://meta.discourse.org/u/TobyPinder)
#### Post date: [Abril 14, 2019, 9:54pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/30 "2019-04-14T21:54:52Z")

</div>

> It also isn’t for you to decide that other people’s data from abandoned, never used accounts belongs unconditionally to you, forever.

Again, the principle is more than valid but the execution has been colossally flawed, and this standoffish attitude in service of the real goal (data lifecycle management) is increasingly serving only to undermine confidence in the transparency of Discourse’s release cycle, which threatens to reduce patching…

Please consider the holistic usage of the discourse platform in the wider assortment of use cases that you and I can know little about instead of painting dissent and questioning around the migration plan as some kind of bad-faith data hoarding exercise.

---

<div class="post-metadata">

### Author: ![codinghorror](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/codinghorror/32/110067_2.png) [@codinghorror](https://meta.discourse.org/u/codinghorror)
#### Post date: [Abril 14, 2019, 9:59pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/31 "2019-04-14T21:59:48Z")

</div>

If Discourse is not working as you desire, feel free to choose another free open source software that better meets your needs.

---

<div class="post-metadata">

### Author: ![Stephen](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/stephen/32/95011_2.png) [@Stephen](https://meta.discourse.org/u/Stephen)
#### Post date: [Abril 14, 2019, 10:02pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/32 "2019-04-14T22:02:14Z")

</div>

Discourse isn’t an identity management platform, if there are accounts who have never read anything, nor responded to anything, they are by definition **not users**.

In any scenario where Discourse is subordinate to SSO or an IdM, were those users to return they would be re-created with the same attributes.

---

<div class="post-metadata">

### Author: ![Eduardo\_Braga](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/eduardo_braga/32/110348_2.png) [@Eduardo\_Braga](https://meta.discourse.org/u/Eduardo_Braga)
#### Post date: [Abril 14, 2019, 10:25pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/33 "2019-04-14T22:25:40Z")

</div>

One question, if it is a user like to read publication, account remains active?

---

<div class="post-metadata">

### Author: ![Stephen](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/stephen/32/95011_2.png) [@Stephen](https://meta.discourse.org/u/Stephen)
#### Post date: [Abril 14, 2019, 10:28pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/34 "2019-04-14T22:28:01Z")

</div>

Correct, if their read time is non-zero they aren’t affected. The accounts have to be totally unused to be hit.

---

<div class="post-metadata">

### Author: ![Eduardo\_Braga](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/eduardo_braga/32/110348_2.png) [@Eduardo\_Braga](https://meta.discourse.org/u/Eduardo_Braga)
#### Post date: [Abril 14, 2019, 10:32pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/35 "2019-04-14T22:32:07Z")

</div>

Great!

If really the user will only read the posts and not create topics Will continue with the active account is a great option.

I want to change to 1 year inactive accounts to be deleted so as not to take up space 🙂

---

<div class="post-metadata">

### Author: ![sam](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/sam/32/102149_2.png) [@sam](https://meta.discourse.org/u/sam)
#### Post date: [Abril 14, 2019, 11:00pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/36 "2019-04-14T23:00:21Z")

</div>

This topic is getting way too heated for my liking, I am putting this topic on freeze for a week.

> [@allu](#):
>
> at least prominently mentioning this in the release notes

1. I am going to now update the old release notes with a very clear description of the feature that is prominent

2. I am going to update our #releases topic to ensure we call this out properly in the upcoming major release on the blog, I feel it is an important measure to default protect user data so it should be announced properly when we finally release 2.3

This change is good for 99.9% of the communities, the edge case 0.01% that use Discourse as an identity provider or some other obscure case have a clear workaround.

**EDIT**

(1) and (2) are now done, see:

> [@Discourse 2.3.0.beta6 Release Notes](https://meta.discourse.org/t/discourse-2-3-0-beta6-release-notes/112839):
>
> New features in 2.3.0.beta6 Add page for all group membership requests There’s also news regarding groups. Now we have a dedicated page to handle requests to join groups: User and group cards on mobile The ability to open user cards on mobile with a tap on the user avatar has been now implemented in the Discourse core. At the same time the theme component [Mobile user-cards](https://meta.discourse.org/t/deprecated-mobile-user-cards/105009) has been deprecated. Add every month / 6 months options to email digest The frequency with which…

---

<div class="post-metadata">

### Author: ![sam](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/sam/32/102149_2.png) [@sam](https://meta.discourse.org/u/sam)
#### Post date: [Abril 14, 2019, 11:00pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/37 "2019-04-14T23:00:29Z")

</div>



---

<div class="post-metadata">

### Author: ![sam](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/sam/32/102149_2.png) [@sam](https://meta.discourse.org/u/sam)
#### Post date: [Abril 21, 2019, 10:00pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/38 "2019-04-21T22:00:01Z")

</div>

This topic was automatically opened after 6 days.

---

<div class="post-metadata">

### Author: ![pfaffman](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/pfaffman/32/120154_2.png) [@pfaffman](https://meta.discourse.org/u/pfaffman)
#### Post date: [Abril 22, 2019, 12:14pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/39 "2019-04-22T12:14:33Z")

</div>

So discourse is the SSO master? And users are logging in to the other system via discourse? If so it would seem like this logins should count as logging in.

---

<div class="post-metadata">

### Author: ![FoohonPie](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/foohonpie/32/119648_2.png) [@FoohonPie](https://meta.discourse.org/u/FoohonPie)
#### Post date: [Abril 22, 2019, 9:48pm UTC](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995/40 "2019-04-22T21:48:32Z")

</div>

It’s the other way around: my other system handles auth and then logs into Discourse from there.

It’s besides the point either way though; it’s the users that aren’t logging in that I am specifically concerned about, as I (and others) may not necessarily agree with Discourse’s conclusion that these users represent worthless data. The implementation details are irrelevant to this concern.

It’s all a non-issue for me now though. The updates to the release notes were great 👍 and @ssvenn’s suggestion to call out new site settings sounds like an awesome check against any future cases we can’t yet anticipate. I hope it gets some further consideration.

[Página anterior](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995.md?page=1)

[Próxima página](https://meta.discourse.org/t/discourse-deleted-1500-inactive-users-who-havent-been-seen-for-two-years-after-update/114995.md?page=3)
