Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> FYI - never use oauth to log into anything you care about.

Or, "Then create a password and revoke oauth permissions from the provider"



These days all browsers offer to generate and save a syncable password for you and fill in the email, so it's almost as easy to make a normal account as it is to use OAuth. It feels like OAuth/SSO is a tool for a different, less user-friendly era.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: