Reading up a bit on OAuth 2

It's a better solution for digital identity than the everything app / Amazon

In that identity is separate from the app

Which allows multiple apps and multiple identity providers

But it's insecure insofar as account security depends on *every* site implementing the client side correctly

And they don't

And it's centralized and KYC'd

And there's no mechanism for sharing data between apps

And there's no mechanism for sharing data between identity providers

So, still sucks

Reply to this note

Please Login to reply.

Discussion

No replies yet.