List: websecurity@lists.webappsec.org
From: Paul Johnston
[WEB SECURITY] Social login / federated identity
Mon, Oct 15, 2012 10:59 AM
Personally, I think that the vast majority of web sites should allow
social login. It's probably not appropriate for online banking, but
pretty much anything else is ok.
I have some knowledge of OpenID and OAuth, but I am struggling to put
together a clear summary of the current state of the industry, and to
make clear recommendations.