[OpenID] OpenID Consumers "Best Practices"?

Ekkehard Gümbel guembel at naw.info
Thu Oct 4 08:07:09 UTC 2007


Hi Kevin and all,
and thanks for your answer:

>I recommend http://www.plaxo.com/api/openid_recipe
That is definitely a cool one and I have to admit I didn't find it before.
Maybe the end-user oriented parts of it - among other sources - should 
even be turned into "official" guidelines, to ensure that the basic 
workflow (and maybe the look&feel) for end users is similar on ALL OpenID 
enabled web sites.

In addition to this ressource and topic, is there anything on email 
validation, XSS prevention, bot protection, ...? (Not that I don't have my 
own ideas, I would just like to merge them with other people's 
experiences, and again: I strongly believe these questions will become 
more important over time, and thus should not be overlooked by any 
implementor.)

cheers
/Ekki



More information about the general mailing list