4 ms·
The best course of action is to not store the data at all. Use "Sign in with Facebook" et. al and never even get the user password for example. I'm so tired of
by bluecmd 11y ago
The best course of action is to not store the data at all. Use "Sign in with Facebook" et. al and never even get the user password for example. I'm so tired of needing to have a password manager when we have good authentication platforms today.
- juliangregorian 11y agoToo bad we don't have a viable decentralized option, I don't at all relish the idea of Facebook Inc. owning my online identity.
- ryukafalz 11y agoDiaspora. Friendica. Pump.io. If you're more technically inclined, you can self-host one of many: https://indiewebcamp.com/projects https://indiewebcamp.com/projects There isn't just one alternative, and I don't think there really should be - the fact that most of them are interoperable means that not everyone has to be using the same software. We need to standardize on a protocol, not so much an implementation. (But yes, there does need to be a nice-looking implementation if we want the general public to use it.)
- juliangregorian 11y agoMerely having wide adoption of OpenID or Mozilla Persona would be a worthy start. I just don't have much faith in these idealistic open source projects these days; when I google "diaspora oauth" and the first thing I find is abandonware (https://github.com/diaspora/diaspora-client https://github.com/diaspora/diaspora-client), it pretty much confirms my cynicism. "Nice-looking" isn't the only thing we need from identity management.
- deleted 11y ago[deleted]
- ryukafalz 11y agoAh, okay, you were referring to identity in the technical sense rather than the social sense. I agree that increased adoption of OpenID or Persona would be great. Persona holds the most promise in my opinion, since it's similar enough to existing sign-in systems as to not confuse the average user... but it does require providers to actually use it. IndieAuth is interesting too: https://indieauth.com/ https://indieauth.com/