Hacker News new | past | comments | ask | show | jobs | submit login

One thing I like about having different passwords and logins for each site is that I don't have to worry about cascading failures.

This seems like it isn't getting rid of user/pass authentication, it's just pushing it onto someone else, in this case your cell or email provider.

Other users have correctly stated that this doesn't increase the attack surface, however it does increase the value of a single vector.

Please correct me if I've missed a key point in the OP, I didn't spend lots of time reading the finer points of the implementation.




Your email is already a single vector. Most sites have a "forget my password" link and all you need is the email account to reset the password and access the account.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: