3 ms·
I want to disagree with both of you - the sweet spot is often 3rd-party authN, 1st-party authZ: * don’t try to implement the hard/annoying bits (strange access
by plugin-baby 4y ago
I want to disagree with both of you - the sweet spot is often 3rd-party authN, 1st-party authZ:
* don’t try to implement the hard/annoying bits (strange access detection, account recovery, sending emails, password storage)
* keep ownership of your user list and users’ capabilities
- atsjie 4y agoI disagree with all three of you. It depends on the use case.