Not sure on the feasibility of this, but I've trawled the forums a bit, and aside from a handful of posts which have discord links, I can't see much in the spotlight specifically for Oauth2.
What's the appetite for OAuth2 around here?
Personally, in all the apps and platforms I develop, I try desperately to stay away from username/password storage and prefer passing that off to other providers. Now, for Torn specific apps, it would make perfect sense for a little bit of authentication to be available for basic info and reverification.
At the moment, I have no mechanism to validate that the person using my service is the person they say they are. API keys can be stolen, or leaked and the only viable way I can think of doing this in a way that would make sense would be to ask Torn nicely if it can verify the user attempting to register with me.
What are people's thoughts on pushing for this?
~ Rich
What's the appetite for OAuth2 around here?
Personally, in all the apps and platforms I develop, I try desperately to stay away from username/password storage and prefer passing that off to other providers. Now, for Torn specific apps, it would make perfect sense for a little bit of authentication to be available for basic info and reverification.
At the moment, I have no mechanism to validate that the person using my service is the person they say they are. API keys can be stolen, or leaked and the only viable way I can think of doing this in a way that would make sense would be to ask Torn nicely if it can verify the user attempting to register with me.
What are people's thoughts on pushing for this?
~ Rich