Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> What's wrong with basic auth with HTTPS?

The only thing wrong that I can see is that it's 2017 and the browsers still don't have a good (indeed, AFAIK, any) UI for logging out.



Or for staying logged in across sessions (or not). But it should be fine for an API.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: