Hi there, I just encountered that it is possible to signup with an email containing invalid chars (at least by our internal email validation). We use the lock widget on the redirect page.
This one passed the test:
test00990@test009kökölköl90.ch
Can we change this behaviour ourselves in the management dashboard of auth0, is it a bug or do i miss something?
It looks like a bug to me. Can you please file a report in the lock repo describing the issue? If you are unable to, let me know and I can file it on your behalf.