theweave
Mar 11th, 2012, 08:56 PM
Okay after reading so much about people having their hard earned SDM points disappear simply because someone was able to login and change their info, transfer out their points etc. and how much misery, pain and frustration this has caused. I decided to at least try and do something about it!
I have created an Online Petition addressed to this very topic. My goal is 1 MILLION signatures! I know it sounds high, but in today's world of forums, social media, email etc. I am hoping that word will spread beyond here and get more to sign!
Your Optimum Points info should be kept SECURE, it is as valuable as cash! But SDM has not shown any intention of helping members who "lose" their points, nor changing the way they do things!
So now it is our chance to be a part of change!!!!!
The petition (in case you want to read it before signing) reads as follows:
Shoppers Drug Mart (hereafter referred to as SSM) operates a very generous and very easy loyalty points program entitled "Shoppers Optimum Points". Members receive points on every transaction made at SDM and can redeem their points at certain levels for free merchandise. Furthermore, SDM Optimum members may obtain both a SDM MasterCard as well as a Royal Bank Optimum Savings Account to earn further points.
SDM provides it's Optimum members the opportunity to monitor, maintain and make changes to their Optimum account on the SDM website. In order to access their information, one needs the Optimum account number and ONE of the following: card members date of birth, postal code or a password they have created.
Once these requirements have been fulfilled, the person is given access to that Optimum account and may change the address, password in the account or transfer points from that account to another Optimum Account.
Despite the fact that this profile information is extremely valuable, ie: members can redeem points for merchandise, SDM, despite being aware that their members information and point balance information is not secure, allows people to login to Optimum accounts in a web environment that is 100% NOT SECURE. Neither the logn screen nor the members profile is protected by a Secure Socket Layer of encryption and security.
The lack of such a security system has allowed for the unauthorized access to and unknown number of SDM Optimum Account Holder's accounts and has resulted in those members having their points transferred to unknown persons.
Further, when these members complain to SDM about the disappearance of their points from their accounts, SDM refuses to investigate their claims, determine who had the unauthorized access to their account, where those points were transferred to and have refused to return the missing points to the member who's account was violated. SDM has also placed blame for the loss of points on the member who's account was compromised, stating various terms and conditions all of which have no bearing on the breach that has been committed to that members Optimum account.
This lack of a Secure login system has resulted in the disappearance of an unknown amount of legitimately earned SDM Optimum Points, which in turn have the value of unknown value of possible redeemable amounts for merchandise at SDM to the members who have their account compromised. The amount of points disappearing has a direct relationship on the value of the said points.
We, the undersigned, are current or former members of the SDM Optimum Program who utilize the online system provided by SDM for management of our SDM Optimum accounts.
Further, we demand that SDM upgrade their internet systems and implement immediately a Secure Socket Layer protection to the information contained in the Optimum Program database.
Further, we demand that SDM publicly warn their Optimum members profile pages are, in fact, not secure on the internet by publishing a statement on their internet home page, Facebook account, Twitter account and by publishing in major media outlets across Canada.
Finally, we demand that SDM investigate all previous breaches of their Optimum Points Profile pages, as reported by affected members, that they return those account holders to the original "whole" position that they were in at the time of the breach occurring and they identify the person or persons responsible for these breaches and have them prosecuted in the Criminal Courts of Canada and further that they publish the names of such people on their internet homepage, Facebook homepage, Twitter Account and in high profile media outlets across Canada.
Go here to SIGN THE PETITION (http://www.change.org/petitions/make-shoppers-drug-mart-protect-your-optimum-points-account-online)
ALSO, PLEASE SPREAD THE WORD ABOUT THIS BY EMAILING YOUR FRIENDS, SPREADING THE WORD ON FACEBOOK, TWITTER, YOUR BLOG OR JUST TELL PEOPLE!!!
We have the power here, the power to make a positive change for Optimum members!
Thank You.
I have created an Online Petition addressed to this very topic. My goal is 1 MILLION signatures! I know it sounds high, but in today's world of forums, social media, email etc. I am hoping that word will spread beyond here and get more to sign!
Your Optimum Points info should be kept SECURE, it is as valuable as cash! But SDM has not shown any intention of helping members who "lose" their points, nor changing the way they do things!
So now it is our chance to be a part of change!!!!!
The petition (in case you want to read it before signing) reads as follows:
Shoppers Drug Mart (hereafter referred to as SSM) operates a very generous and very easy loyalty points program entitled "Shoppers Optimum Points". Members receive points on every transaction made at SDM and can redeem their points at certain levels for free merchandise. Furthermore, SDM Optimum members may obtain both a SDM MasterCard as well as a Royal Bank Optimum Savings Account to earn further points.
SDM provides it's Optimum members the opportunity to monitor, maintain and make changes to their Optimum account on the SDM website. In order to access their information, one needs the Optimum account number and ONE of the following: card members date of birth, postal code or a password they have created.
Once these requirements have been fulfilled, the person is given access to that Optimum account and may change the address, password in the account or transfer points from that account to another Optimum Account.
Despite the fact that this profile information is extremely valuable, ie: members can redeem points for merchandise, SDM, despite being aware that their members information and point balance information is not secure, allows people to login to Optimum accounts in a web environment that is 100% NOT SECURE. Neither the logn screen nor the members profile is protected by a Secure Socket Layer of encryption and security.
The lack of such a security system has allowed for the unauthorized access to and unknown number of SDM Optimum Account Holder's accounts and has resulted in those members having their points transferred to unknown persons.
Further, when these members complain to SDM about the disappearance of their points from their accounts, SDM refuses to investigate their claims, determine who had the unauthorized access to their account, where those points were transferred to and have refused to return the missing points to the member who's account was violated. SDM has also placed blame for the loss of points on the member who's account was compromised, stating various terms and conditions all of which have no bearing on the breach that has been committed to that members Optimum account.
This lack of a Secure login system has resulted in the disappearance of an unknown amount of legitimately earned SDM Optimum Points, which in turn have the value of unknown value of possible redeemable amounts for merchandise at SDM to the members who have their account compromised. The amount of points disappearing has a direct relationship on the value of the said points.
We, the undersigned, are current or former members of the SDM Optimum Program who utilize the online system provided by SDM for management of our SDM Optimum accounts.
Further, we demand that SDM upgrade their internet systems and implement immediately a Secure Socket Layer protection to the information contained in the Optimum Program database.
Further, we demand that SDM publicly warn their Optimum members profile pages are, in fact, not secure on the internet by publishing a statement on their internet home page, Facebook account, Twitter account and by publishing in major media outlets across Canada.
Finally, we demand that SDM investigate all previous breaches of their Optimum Points Profile pages, as reported by affected members, that they return those account holders to the original "whole" position that they were in at the time of the breach occurring and they identify the person or persons responsible for these breaches and have them prosecuted in the Criminal Courts of Canada and further that they publish the names of such people on their internet homepage, Facebook homepage, Twitter Account and in high profile media outlets across Canada.
Go here to SIGN THE PETITION (http://www.change.org/petitions/make-shoppers-drug-mart-protect-your-optimum-points-account-online)
ALSO, PLEASE SPREAD THE WORD ABOUT THIS BY EMAILING YOUR FRIENDS, SPREADING THE WORD ON FACEBOOK, TWITTER, YOUR BLOG OR JUST TELL PEOPLE!!!
We have the power here, the power to make a positive change for Optimum members!
Thank You.