Hacker News new | ask | show | jobs
by Mesmoria 1083 days ago
Maybe it's my ignorant paranoia - but entering my google password into a login box produced by an app i just downloaded makes me nervous.

I am (mostly) sure it was doing a legitimate OAuth - but how can I tell?

2 comments

I noticed the exact same thing and the fact it didn't pick up my login session in safari... which for me raised some alarm bells that this "could" be a nice ploy to grab my google credentials.

For this reason it was a hard no, I proceeded no further and deleted the app.

No problem, thanks for giving it a try. You're welcome to use the Google SSO, provided this gives you more assurance.

Happy to discuss any specific concerns or issues you had during your log in session.

You're welcome to use the Google SSO, handled by.. Google. Hopefully this gives you a bit more assurance.