Hacker News new | past | comments | ask | show | jobs | submit login

It needs to happen at the application level. You can phish for someone's open ID login just as easily as you can their Yahoo login, right? Just make it transparent to the user, build it into the browser.



Consider applying for YC's W25 batch! Applications are open till Nov 12.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: