  1. exactly - they obviously want to do tracking on response to the email but this goes against all security best practice standards that everyone else is pushing to people: - never click on links in emails about resetting passwords - don't be fooled by fake URLs like evernote.mkt5371.com then on the top of the home page there is link that takes you straight to a login page with no explanation - and the link looks completely out of character with the rest of the home page - it looks like it has been hacked in! they have blog articles and other info on this issue that could have been linked to in a more legitimate looking way! the forced password reset was a reasonable response to the intrusion, but their implementation of it was fundamentally flawed and counter-productive kelly
