3 ms·
I twice worked at companies that built authentication as part of their application (using open source libraries, not from scratch). It's a mistake, and a mistak
by rsstack 4y ago
I twice worked at companies that built authentication as part of their application (using open source libraries, not from scratch). It's a mistake, and a mistake that's very expensive to fix later. Even more expensive not to fix given the sensitivity of this area of software.
- jokethrowaway 4y agoAll the companies I worked with in the last 15 years had custom auth (all bcrypt in the end). Nothing bad ever happened. They're still rocking the same system and the only notable change that went through was adapting to gdpr deletion requests. And they all avoided that okta hack from some time ago. What's expensive mistake are you talking about?