Comment on Why?
iltg@sh.itjust.works 1 day ago
not 100% related but i think login should be less user friendly
“here take this 512 byte hash and store it and it’s you and if you lose it or have it stolen i couldn’t care less”
email verification is hard to do right (as said in top reply), oauth is annoying to get set up but more secure and all big providers have fancy recovery and login methods
no oauth? get the hash or go away
dreamy@quokk.au 12 hours ago
I very much agree. I’ve always loved how Mullvad VPN and SMSPool have handled logins in this kind of fashion. It’s just much more convenient than e-mail + password.