Hacker News new | ask | show | jobs
by lelanthran 478 days ago
> We will have to agree to disagree on whether SSO is security or not.

It's not a binary flag, it's a spectrum. "Defense in depth" is a thing, and that means a layered approach to security.

Just because a product is missing SSO does not in any way mean that that product fails any security check.

IMO, holding the position that not having SSO is the same as not having security is unreasonable.

Missing SSO does not magically make the other $FOO layers of your security vanish into the ether.