|
|
|
|
|
by octoberfranklin
1576 days ago
|
|
> - The suggestion of signing the timestamp means that any web site you log into with this can log in as you to any other web site you log in to This is a (privacy) feature, not a bug. It forces you to use a different public key for each website. |
|
Anyway, unclear to me how this is better than x509 client certs, except that the author probably doesn't know about them.