No reply is better than no-reply
contrast.ie
contrast.ie
However, we included a link to get in touch with your local membership officer, to cancel membership etc. which would be completely automated, but we'd get loads of replies relating to those things, and spend quite some time processing those.
After we started sending from a no-reply and just included the contact-email in the mail-body, we didn't get a single e-mail related to those.
We might have pissed off some people who couldn't be bothered to read beyond the first five words, but I don't really care.
Inside Facebook does this too.
I suppose they could set the reply address to some generic support location. But in that case, the best solution would have been to forward the initial (and unverifiable) email to the support location in the first place.
But it's not an automatic reply. It's happened a few times with different people signing the mail but most importantly, the e-mail address is verified, it just wasn't the address connected with the specific billing enquiry I made.
Also, the original mail was sent to their generic support address, as requested on their site (last paragraph):
I'm pretty sure it was it was badly coded script but I can't be arsed to dissect the webpage and fix it for them.
It doesn't matter that the website is coded poorly, with that opinion, malicious websites are "coded poorly" as well. Now, it doesn't mean that the crash you see is necessarily a security vuln, but it is at least a bug.