# How to disable users from using anonymous email to register?

**URL:** https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034
**Category:** Support
**Tags:** email
**Created:** [September 25, 2023, 3:57pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034 "2023-09-25T15:57:01Z")
**Posts on this page:** 8
**Page:** 1

<div class="post-metadata">

### Author: ![Guo\_SpicyGum](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/guo_spicygum/32/319983_2.png) [@Guo\_SpicyGum](https://meta.discourse.org/u/Guo_SpicyGum)
#### Post date: [September 25, 2023, 3:57pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/1 "2023-09-25T15:57:01Z")

</div>

Hello, I would like to know how to disable users from using anonymous email to register?

---

<div class="post-metadata">

### Author: ![Canapin](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/canapin/32/119591_2.png) [@Canapin](https://meta.discourse.org/u/Canapin)
#### Post date: [September 25, 2023, 4:07pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/2 "2023-09-25T16:07:21Z")

</div>

Hello Guo SpicyGum :blob_wave:

By “anonymous email”, do you mean [Disposable email address](https://en.wikipedia.org/wiki/Disposable_email_address)?

If you do, you can add these domains to the `blocked email domains` setting.  
You can find a list here: [disposable-email-domains/disposable\_email\_blocklist.conf at main · disposable-email-domains/disposable-email-domains · GitHub](https://github.com/disposable-email-domains/disposable-email-domains/blob/master/disposable_email_blocklist.conf)

As a side note, I wouldn’t bother adding the whole list to this setting… From my experience, many spammers use legitimate email providers such as gmail.

---

<div class="post-metadata">

### Author: ![Guo\_SpicyGum](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/guo_spicygum/32/319983_2.png) [@Guo\_SpicyGum](https://meta.discourse.org/u/Guo_SpicyGum)
#### Post date: [September 25, 2023, 4:13pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/3 "2023-09-25T16:13:40Z")

</div>

For example, if a user is registered with [proton.me](http://proton.me), an email service provider, how can I disable it?

---

<div class="post-metadata">

### Author: ![Lilly](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/lilly/32/575047_2.png) [@Lilly](https://meta.discourse.org/u/Lilly)
#### Post date: [September 25, 2023, 4:18pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/4 "2023-09-25T16:18:04Z")

</div>

just like explained here

> [@Canapin](#):
>
> you can add these domains to the `blocked email domains` setting.  
> You can find a list here: [disposable-email-domains/disposable\_email\_blocklist.conf at main · disposable-email-domains/disposable-email-domains · GitHub](https://github.com/disposable-email-domains/disposable-email-domains/blob/master/disposable_email_blocklist.conf)

---

<div class="post-metadata">

### Author: ![Guo\_SpicyGum](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/guo_spicygum/32/319983_2.png) [@Guo\_SpicyGum](https://meta.discourse.org/u/Guo_SpicyGum)
#### Post date: [September 25, 2023, 4:19pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/5 "2023-09-25T16:19:31Z")

</div>

No, I didn’t express myself clearly.

I know about the disabled user; what is needed is that he cannot use an anonymous email address to register.

Where do I place this file? [disposable-email-domains/disposable\_email\_blocklist.conf at main · disposable-email-domains/disposable-email-domains · GitHub](https://github.com/disposable-email-domains/disposable-email-domains/blob/master/disposable_email_blocklist.conf)

---

<div class="post-metadata">

### Author: ![Canapin](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/canapin/32/119591_2.png) [@Canapin](https://meta.discourse.org/u/Canapin)
#### Post date: [September 25, 2023, 5:08pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/6 "2023-09-25T17:08:23Z")

</div>

> [@Guo\_SpicyGum](#):
>
> I know about the disabled user; what is needed is that he cannot use an anonymous email address to register.

So, if I understand correctly, your issue isn’t so much about preventing a user from using a disposable email, but rather identifying multiple accounts from a single user, right?

It’s not something you can do out-of-the-shelf, but you might be interested in looking at [Discourse Fingerprint - Browser Fingerprinting Plugin](https://meta.discourse.org/t/discourse-fingerprint-browser-fingerprinting-plugin/114890), which helps to do this task.

---

<div class="post-metadata">

### Author: ![simon](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/simon/32/339122_2.png) [@simon](https://meta.discourse.org/u/simon)
#### Post date: [September 25, 2023, 5:38pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/7 "2023-09-25T17:38:57Z")

</div>

> [@Guo\_SpicyGum](#):
>
> Where do I place this file? [disposable-email-domains/disposable\_email\_blocklist.conf at main · disposable-email-domains/disposable-email-domains · GitHub](https://github.com/disposable-email-domains/disposable-email-domains/blob/master/disposable_email_blocklist.conf)

You can manually add any email address from that list to your site’s `blocked email domains` setting:

 ![image](https://global.discourse-cdn.com/meta/original/4X/6/b/3/6b38e2aaf3eaced84806021798f186130b990092.png)

Adding the full list to that setting using the Discourse UI would be a lot of work. If you really want to do it, you could enter your site’s Rails console and update the setting from there. For example:

```plaintext
SiteSetting.blocked_email_domains=""mailinator.com|0-mail.com|027168.com"

```

I think the fingerprinting plugin that Canapin has linked to would be a better approach. Also, in case it helps, make sure that you are blocking the IP addresses of any users that you want to prevent from creating new accounts when you delete them:

 ![image](https://global.discourse-cdn.com/meta/original/4X/f/2/7/f27722abb9026669446c1b6e8c37f69136d20028.png)

---

<div class="post-metadata">

### Author: ![anon65426961](https://avatars.discourse-cdn.com/v4/letter/a/34f0e0/32.png) [@anon65426961](https://meta.discourse.org/u/anon65426961)
#### Post date: [September 25, 2023, 8:14pm UTC](https://meta.discourse.org/t/how-to-disable-users-from-using-anonymous-email-to-register/280034/8 "2023-09-25T20:14:10Z")

</div>

[Proton.me](http://Proton.me) isn’t technically an e-mail provider, that is one of many domains used by Proton AG that mail addresses can be registered with along with others like protonmail.CH, [pm.me](http://pm.me), [protonmail.com](http://protonmail.com), and any custom domain owned by an account holder with Proton AG/CERN.

Your question of how to disable or prevent users from using an anonymous email to register I don’t have a clear answer for, this is kind of a confusing question because any e-mail can be anonymous unless it is directly registered in someone’s name in a public registry (which is required for all .US domains), or they write in their name in the registration form for a discourse forum account which I believe you can set to be required in administrator settings.

If the problem is spam/fraudulent accounts, you can require new accounts must be reviewed and manually approved by staff first before they can access your forum in the setup wizard page two settings:

 ![setup wizard](https://global.discourse-cdn.com/meta/original/4X/3/8/4/384973b9cea5eb42fc59cce9945e8a2017f0e3ef.png)

You can also report proton accounts that are being used for any kind of fraudulent purpose here:

> **[Report abuse form | Proton](https://proton.me/support/report-abuse)**
>
> If you witness behavior that violates our terms of service, fill out this form, and we'll investigate and take the appropriate action.
