Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I do the same with my personal accounts. With work accounts that use GSuite, though, I've been mostly using Google for SSO.

Expecting ordinary users to make these kinds of decisions is unrealistic.



Yeah, I don’t expect ordinary users to make that decision. But I have no ability to fix this stuff, so I just make decisions for myself in order to minimize unnecessary risks.


It's basically a single point of failure (SPOF) and with proper risk assessment, one ultimately concludes to use email/password whenever available.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: