Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Is there any advantage of this over using Oauth to 'Sign-in with Google/FB' other than being platform agnostic? similar workflow except tokens are being exchanged between server-server vs sever-email.


No, except that SSO via such a service is more secure than the email approach. However, being platform agnostic is quite an important reason.


A lot of times websites start requesting permission to know your name. With email only, they wouldn't have the option.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: