3 ms·
Did you read the explainer? > Currently, if the user of a password manager would like to change their password on example.com, basically all the password manag
by intertextuality 8y ago
Did you read the explainer?
> Currently, if the user of a password manager would like to change their password on example.com, basically all the password manager can do is load example.com in a browser tab and hope the user can figure out how to update their password themselves.
> The goal of this spec is to do the simplest possible thing to improve this situation.
It's an attempt to standardize the endpoint for changing a password. Which is kinda random for each website currently.
- crescentfresh 8y ago> Did you read the explainer? I did. My confusion arose from it. Something is clear to you that is not to me :)
- JW_00000 8y agohttps://news.ycombinator.com/.well-known/change-password https://news.ycombinator.com/.well-known/change-password will just redirect to https://news.ycombinator.com/changepw https://news.ycombinator.com/changepw. If the user isn't logged in, that page asks the user to log in.
- crescentfresh 8y agoAh I see, and from the perspective of a password manager it would know what password to fill into the password field to get the user into the site. After that, once on the change password screen said manager would also take over generating a new password, yes?