[OpenID] OpenID consumers should make it clear if they are going to publish a user's OpenID

Chris Messina chris.messina at gmail.com
Mon May 14 03:45:07 UTC 2007


On 5/13/07, Dick Hardt <dick at sxip.com> wrote:
>
> If the OpenID is exposed in the HTML, then it can be correlated to
> other sites since it is globally unique.
>
> -- Dick

Correct. But given Simon's proposal, if we allow people to opt out
from the public display of their OpenID URL, what value should we use
instead?

And, to your previous point about a nickname that has only to be
unique to one site, we end up getting back into choosing unique
usernames all over again. I thought that that was something that we
would want to avoid?

Chris


-- 
Chris Messina
Citizen Provocateur &
  Open Source Advocate-at-Large
Work: http://citizenagency.com
Blog: http://factoryjoe.com/blog
Cell: 412 225-1051
Skype: factoryjoe
This email is:   [ ] bloggable    [X] ask first   [ ] private



More information about the general mailing list