Comment by RVuRnvbM2e

11 hours ago

It's the worst delegated authorisation system except for all the others that have been tried from time to time.

The original OpenID was fine.

  • IndieAuth is fine (but I’ve yet to see an implementation out in the wild).

    Tailscale’s implementation of OIDC is nice: https://tailscale.com/docs/integrations/identity/custom-oidc

    But all that only makes sense if you own a domain name.

    • > But all that only makes sense if you own a domain name.

      I have a hard time believing the venn diagram of "has a need for an auth provider" and "has at least one domain name" isn't just a a small circle almost entirely inside a large one, and the sliver on the outside is not for any reason other than stubborn refusal.