• 4grams@awful.systems
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      The fact that modern life basically requires a third party app to prevent instant identity theft and fraud is a real problem.

      It all comes down to the fact that every fucking service in the world is just there to scrape data. I don’t need to logon and provide my every detail to check the local weather, I shouldn’t have to give my social security number to play video games…

      • PotatoesFall@discuss.tchncs.de
        link
        fedilink
        arrow-up
        0
        ·
        10 months ago

        In a way, password managers are kinda the solution that prevent you from needing to involve a third party in your auth. You can even use completely open source software, and manage all the data yourself. That gives you way more control than say, oauth. Although sure, passkeys are better in many ways.

        Even if we lived in a world where surveillance capitalism and personal data harvesting wasn’t a thing, you still need to identify yourself.

        • 4grams@awful.systems
          link
          fedilink
          English
          arrow-up
          0
          ·
          10 months ago

          I agree, and I do use an open source one, but I disagree that we need to identify ourselves for everything. You can’t even look at a resturaunt menu anymore without signing up for an account. Everything is gate kept behind an account, and those accounts are all so interconnected that when one is compromised, it might for multiple and often you will never know (and I’m not talking about password reuse).

          Password managers are a good solution to the problem, I’m not mad at them, I’m mad at the problem that necessitates them.

          • PotatoesFall@discuss.tchncs.de
            link
            fedilink
            arrow-up
            0
            ·
            10 months ago

            I agree that there’s too many websites that want you to make an account, and often data harvesting is the motive. What I’m saying is, even if that’s not the case, I would still need a password manager to log into various services that require auth as a core part of the service (email, banking, social media, services with my payment information, insurance, version control, anything work-related, any paid service)