Herb

Member
First Name
Herb
Joined
Sep 2, 2022
Threads
0
Messages
15
Reaction score
6
Location
Ohio
Vehicles
2021 Mustang Mach-E
Occupation
Engineer
Country flag
Was using dimo.zone
 

DevSecOps

Well-Known Member
First Name
Todd
Joined
Sep 22, 2021
Threads
69
Messages
4,764
Reaction score
11,624
Location
Sacramento, CA
Vehicles
'21 Audi SQ5 / '23 Rivian R1T / '23 M3P
Occupation
CISO
Country flag
Were all you locked-out folks using Optiwatt or are the other apps that caused it too?
I was locked out for using postman and I'm part of their developer program. Anyone who is a developer knows we use postman for API testing regularly.

For people talking about us using unauthorized methods or shady ways of doing things, they do have a developer program and they allow access to the API. It's not shady when they allow us access through an official program. All that said, their API documentation is absolute garbage and they don't mention what will get you locked out or not, nor do they even check if you're a developer before locking you out.

Ford Mustang Mach-E PSA: Unauthorized API use can disable your FordPass account Screenshot_20220915-100606
 
Last edited:

kennelh

Well-Known Member
First Name
Louise and Ken
Joined
Nov 28, 2019
Threads
13
Messages
1,184
Reaction score
1,374
Location
Northern California
Vehicles
J1 '21 Premium Ex RWD (Rapid Red)
Country flag
For people talking about us using unauthorized methods or shady ways of doing things, they do have a developer program and they allow access to the API. It's not shady when they allow us access through an official program. All that said, their API documentation is absolute garbage and they don't mention what will get you locked out or not, nor do they even check if you're a developer before locking you out.
Additionally, the API documentation mentions they use OAuth2 (we all know that), but nowhere does it give details on how to use it. I reached out to Ford a week ago through the developer's site asking for any information on how to "properly" go about developing my app and have yet to get a response.
 

Logal727

Well-Known Member
First Name
C
Joined
Aug 23, 2021
Threads
101
Messages
7,351
Reaction score
11,347
Location
Florida
Vehicles
‘21 Carbonized Gray Mustang Mach-E Premium AWD Ext
Country flag
I was locked out for using postman and I'm part of their developer program. Anyone who is a develop knows we use postman for API testing regularly.

For people talking about us using unauthorized methods or shady ways of doing things, they do have a developer program and they allow access to the API. It's not shady when they allow us access through an official program. All that said, their API documentation is absolute garbage and they don't mention what will get you locked out or not, nor do they even check if you're a developer before locking you out.

Screenshot_20220915-100606.png
Explain your intentions will clearly track down the nefarious hackers lol
 


DevSecOps

Well-Known Member
First Name
Todd
Joined
Sep 22, 2021
Threads
69
Messages
4,764
Reaction score
11,624
Location
Sacramento, CA
Vehicles
'21 Audi SQ5 / '23 Rivian R1T / '23 M3P
Occupation
CISO
Country flag
Explain your intentions will clearly track down the nefarious hackers lol
It just proves how disjointed the whole system is. "Explain what your intentions were"... If these guys had 1/2 of a clue they would know that Postman is used to test APIs by over 20 million developers. If they only bothered to cross reference their data to the developer accounts they would see it was using the same email address registered as a developer. It's just a mess and no where does it say you can't use postman. I have searched high and low.

To your point, that's just another example of how clueless they are. As if a true malicious actor would state their actual intent.
 
Last edited:

neiloakley

Well-Known Member
Joined
Sep 7, 2021
Threads
5
Messages
97
Reaction score
32
Location
UK
Vehicles
Mach E RWD LR
Country flag
? ? ? ? ?

No phone number. I'll send you a DM with the email address. You have to email them and it will take a couple days.
any chance I can get that info please?

Homebridge plus the FordPass plugin seems to be causing the issue for me!
 

jrdelong1043

Well-Known Member
First Name
Joe
Joined
Feb 19, 2021
Threads
13
Messages
69
Reaction score
38
Location
Chillicothe, Ohio
Vehicles
2004 Honda Civic
Occupation
Utility Arborist
Country flag
Another update since I have been locked out, and then let back into my account. I have been locked out again even though I deleted and stopped using the Optiwatt app ?. So annoying.
 

Kamuelaflyer

Well-Known Member
First Name
Bill
Joined
Feb 18, 2020
Threads
11
Messages
11,332
Reaction score
22,907
Location
Hawaii
Vehicles
2021 Premium Infinite Blue. ER AWD. 2020 Raptor, 2021 Ranger.
Country flag
Another update since I have been locked out, and then let back into my account. I have been locked out again even though I deleted and stopped using the Optiwatt app ?. So annoying.
Were you using either of the widget like programs for iOS or Android?
 

Mach-Lee

Well-Known Member
First Name
Lee
Joined
Jul 16, 2021
Threads
262
Messages
11,351
Reaction score
24,978
Location
Wisconsin
Vehicles
2022 Mach-E Premium AWD
Occupation
Sci/Eng
Country flag
Another update since I have been locked out, and then let back into my account. I have been locked out again even though I deleted and stopped using the Optiwatt app ?. So annoying.
If all you did was delete the app, then Optiwatt’s server is still pinging Ford’s with you account info. You need to remove the Mach-E from your Optiwatt account completely.
 

jrdelong1043

Well-Known Member
First Name
Joe
Joined
Feb 19, 2021
Threads
13
Messages
69
Reaction score
38
Location
Chillicothe, Ohio
Vehicles
2004 Honda Civic
Occupation
Utility Arborist
Country flag
If all you did was delete the app, then Optiwatt’s server is still pinging Ford’s with you account info. You need to remove the Mach-E from your Optiwatt account completely.
Good thinking, I just went in and deleted both my truck and Mache. Thanks!
 

mdntblu

Member
First Name
Brad
Joined
Sep 7, 2022
Threads
1
Messages
7
Reaction score
1
Location
Corona, CA USA
Vehicles
Ford Fusion Energi, Ford Mustang
Country flag
I just got off the phone and they said they can't fix it right now as there is a global ticket out for this problem and there is nothing they can do.
 

mdntblu

Member
First Name
Brad
Joined
Sep 7, 2022
Threads
1
Messages
7
Reaction score
1
Location
Corona, CA USA
Vehicles
Ford Fusion Energi, Ford Mustang
Country flag
Did another call today and tried to start over and see what happens. They ended up giving me a claim # and told me they'll get back to me in 2-3 business days.
 

methorian

Well-Known Member
Joined
Nov 18, 2019
Threads
18
Messages
1,558
Reaction score
2,437
Location
Roanoke, VA
Vehicles
2021 Mach-E First Edition, 2025 Kia EV6 GT-Line
Occupation
IT Admin
Country flag
? ? ? ? ?

No phone number. I'll send you a DM with the email address. You have to email them and it will take a couple days.
Hey - so I just had this happen to my account. Do you mind shooting me that e-mail in a DM? Was going to e-mail early access since they've helped me with random issues in the past.
 

DevSecOps

Well-Known Member
First Name
Todd
Joined
Sep 22, 2021
Threads
69
Messages
4,764
Reaction score
11,624
Location
Sacramento, CA
Vehicles
'21 Audi SQ5 / '23 Rivian R1T / '23 M3P
Occupation
CISO
Country flag
Hey - so I just had this happen to my account. Do you mind shooting me that e-mail in a DM? Was going to e-mail early access since they've helped me with random issues in the past.
Email them. That's who is best to help you if you are in EAP
Sponsored

 
 







Top