[OpenID] popup protocol UX? Re: FB Connect, OpenID and UX

SitG Admin sysadmin at shadowsinthegarden.com
Mon Dec 15 22:26:54 UTC 2008


>At Yahoo (including Flickr) we have a security requirement that the
>user's password can only be entered on https://login.yahoo.com. We're
>also actively trying to educate users to pay attention to the address bar.

They enter their Flickr password at Yahoo?

You might test whether users are learning this as a specific case 
(Yahoo is authoritative for Flickr) or a general principle (you can 
enter your password for one service at the secure site for a 
partner). Let's say I create a mail provider called Yokel, and then 
supplement it with a photo service called Flickr - but tell users 
that they can log in to their Flickr account through Yokel.

-Shade



More information about the general mailing list