• kehet@sopuli.xyz
    link
    fedilink
    arrow-up
    4
    ·
    51 minutes ago

    I hate this. I don’t want to remember which provider I use for each site and I don’t want accidentally give too many permissions while logging in. Just give me email and password inputs, don’t block password managers and don’t force any magick link nonsense and I’m happy. I don’t even need passkey support

  • thejml@sh.itjust.works
    link
    fedilink
    arrow-up
    41
    arrow-down
    1
    ·
    6 hours ago

    Google and youtube are the same login though…

    Honestly i like these buttons from a user/security POV as oauth only passes back a “login successful” reply and an identifier to associate an account with. Less PII to spread around the internet.

    • clb92@feddit.dk
      link
      fedilink
      English
      arrow-up
      5
      ·
      edit-2
      3 hours ago

      I hate it when it afterwards still prompts me to create a full account, on some badly made sites. Why even allow oauth login if I still have to give you all my personal data…

  • ComradePenguin@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    2 hours ago

    I like this. I want to be able to quickly test the product and if I like it, I make an account afterwards with my email. So I’ve recently been trying a lot of API services for various things and being able to test it quickly and then just delete my account. I see that as a win. Should have email also

  • allywilson@lemmy.ml
    link
    fedilink
    arrow-up
    9
    arrow-down
    1
    ·
    5 hours ago

    If you host your own DB of users and passwords you are a target. Offloading it to as many wide-spread oauth providers as possible is a smart move.

    • refalo@programming.dev
      link
      fedilink
      arrow-up
      10
      ·
      5 hours ago

      Tell that to all the people whose google accounts of 20+ years got locked out with zero recourse or warning.