Hacker News new | ask | show | jobs
by zanny 3343 days ago
> And before we all lose out minds going "the password must die", nobody has yet figured out how to make that happen!

If I were designing a new product today, I would never consider having usernames and passwords. While it is a shame Mozilla killed Persona before it could even have a chance, it is still way, way more reasonable to use third party signin buttons than to try to do it on your own. Again. Brokenly. For the thousandth time per person.

It is a shame that one button alone does not work, but just OpenID connect includes Google, MS, and Amazon (so one login backend and three click buttons and you are covering probably 99% of people, who will have one of those three accounts).

2 comments

I would not funnel users into one of several privacy-sucking walled gardens to use my site.

If there were a true, privacy-oriented product whose sole job was identity, perhaps.

Usernames and passwords are not hard. It's just that a lot of people are stupid.

I hate most OpenID implementations, because I can never remember which particular provider I used to authenticate with them.