[OpenID] [LIKELY_SPAM]Re: [LIKELY_SPAM]Re: Combining Google & Yahoo user experience research

SitG Admin sysadmin at shadowsinthegarden.com
Tue Oct 28 19:38:02 UTC 2008


>I guess the main caveat here is that OPs need to present a suitable 
>user interface in the email case that explains it from the point of 
>view of validating an email address rather than signing in. As 
>usual, the UI at OPs isn't really something OpenID can control, so 
>the success of the above approach will depend on figuring out what 
>the correct UI flow is for this use-case.

I receive all my E-mail at a computer under my direct physical 
control; I don't handle it through a webmail interface. That makes my 
UI flow essentially offline. I may *download* the E-mail while 
online, but I can go offline (good for 0-day exploits that 
immediately try to dial home) before reading it, and copy any "please 
click here" URL's over to another computer by hand.

I (and many other users in my situation) would not be thrilled with a 
UI proposal that required the use of web-mail.

-Shade



More information about the general mailing list