logoalt Hacker News

sam_lowry_today at 11:18 AM2 repliesview on HN

EU should have mandated a user-facing authentication scheme using a random string as the only authentication factor for everything. Pretty much like the API tokens for contemporary enterprise software, except that they would be used by ordinary people and not by application developers.

And complement it with hardware tokens for highly sensitive applications.

Passkeys could have been that, but they were quickly subverted by the industry.


Replies

71bwtoday at 11:41 AM

But this does not allow tracking nor marketing, so why would they do that?

show 1 reply
sneaktoday at 6:39 PM

Tell me you’ve never supported a large userbase without telling me you’ve never supported a large userbase.

What’s the plan for supporting the 50,000 people a day who lost their random string? What’s the plan for supporting the other 50,000 a day who pasted it into a random website? Europe has a billion people.

show 1 reply