Hacker News new | ask | show | jobs
by mgkimsal 4610 days ago
Facebook is horrible at this. You can't not ask for it. In fact, you don't ask for it. Access is automatically granted, whether you want it or not.

I suspect that this might change when there's some massive security breach that causes a big publicly visible compromise (millions of friend lists get abused/compromised by some rogue bot targeting loads of apps using Facebook as just a single sign-on provider), and it'll get changed.

I've had a couple of MVP apps I've demoed to people, wanting to use FB as a SSO, and get quite a bit of "DAMN YOU - YOU'RE NOT GETTING MY FRIEND LIST! YOU DON'T NEED IT!" You're right, I don't. Tell Facebook. I don't want it.

1 comments

Well said, we just ask for basic info. It just gives it for free though we don't want it.