logoalt Hacker News

rbbydotdevyesterday at 6:52 PM3 repliesview on HN

Do you think the complexity of auth in the browser, is because browsers don't do enough?


Replies

bekacruyesterday at 7:01 PM

I think auth is complicated outside of browsers too. But browsers do make some things uniquely confusing, especially cookies and general security primitives are full of footguns

pc86yesterday at 8:13 PM

Not who you're replying to but browsers do way too much. Load the code you're given and don't do anything else.

mooredsyesterday at 10:17 PM

FedCM might be of interest to you. It's one effort to make browsers do more around authentication.

Wrote an article about that here: https://fusionauth.io/articles/authentication/fedcm (hosted at my employer's website)