Social referral hacking
michaelpfister.com
michaelpfister.com
I have seen this claim multiple places, but it seems like it really isn't a robust argument. It is an obvious enough tactic that I have to imagine anyone selling or buying email lists does a simple regex to remove everything between '+' and '@'. Maybe the buyers don't care, but if the sellers are trying to also operate a legitimate business, they'll probably sanitize the subaddresses from their lists before passing the list along.
So it seems like an easy way to guard against this type of referral hacking is to strip the subaddress from an email and compare that email with existing emails. Store the email with subaddress for actual communication but have the subaddress-stripped email be a 'unique' database column as a comparison.
Edit: grammar
I'm curious as to why the OP disclosed this hack - given there are surely more contests to win. I wonder if the target companies have gotten savvy to this technique and it suddenly became ineffective.
1) Instead of using + (which some sites incorrectly reject as invalid), don't use a separator at all. For instance, mesitename@example.org . (This assumes you have a bit more control over email aliases.)
2) Don't use a modification of your standard email address; make the version without the site name still different than your standard email address. For instance, if your usual email is me@example.org, then instead of using mesitename@example.org, use sitessitename@example.org.
3) If you run your own domain, don't bother including a unique component before the @ at all. Just use sitename@yourdomain.example.
You validate email addresses by sending confirmation emails. What's the thinking behind pretending you're doing it in the form?
* myrealaddressregistration@gmail.com
* use myrealaddressregistration+websitename@gmail.com per site
* use a filter to forward to myrealaddress@gmail.com everything BUT messages to: myrealaddressregistration@gmail.com