I can understand that you are pissed of because you lost your funds but this issue has nothing to do with Authentication, Accounting and Authorization. You gave your private key to an untrusted third party. Thus Authorization is not the problem here because with the private key a bad actor can steal your funds regardless of the password protection.
You obviously don't understand even basic concepts. Can you read your email without a password to your account? No.
That is a huge difference. Your e-mail provider is mostly reputable. You have relied on a service that did not appear to be reputable.
The creation of a private key should NEVER be passed to third parties. In my opinion you are not the only one to blame.
IOTA should have clearly warned against it and should also introduce a service for creating a private key.
Yes, I agree. We should have all known it, still we ran straight into the trap, as it was suggested in the IOTA board. And there is proof for that. See the info here: