Hacker News new | ask | show | jobs
by xyst 623 days ago
Any stealership shouldn’t be able to lookup information about any active/sold car. These interactions need to have consent (authorization) from car owner. These authorizations should be short lived and can be revoked at any time.

Any of this sound familiar? Yea that’s because it’s a flow (oauth) used by many companies to control access to assets.

Car companies are just not meant to do tech. So common shit like this is ignored.

If these car manufacturers can barely shit out barely usable “infotainment” systems. Why the fuck are they diving into remote access technology?