Hacker News new | ask | show | jobs
by aryehof 58 days ago
I wonder about a scheme using public key encryption where a scannable code is displayed on the log-in screen, where one has an app on a phone that can match it and send an authorization to the site for login.

Moves the complexity to unlocking a phone and starting an app.

2 comments

(Same reply as to another comment in this thread)

In Denmark the official identification app does basically this. When you to officially verify yourself for e.g. the bank, government sites or whatever you type a “username” (identity string that officially should not be linkable to you but in practice often is). The site then displays a QR code that you scan with phone and then approve with a slider. It is not perfect but it is fairly easy for everybody.

I assume this scannable code would be a QR code. I still regularly see QR codes throw older people for a loop, even if I know they’ve used them before. Opening the camera app to login is not a natural thing to do.

It also assumes everyone has a smart phone. Maybe this true, but it becomes less true the older someone gets.