intimate personals

www female sex

hothousewives com

lesbian online dating

aduld friend finder

marriage and dating

singles wallpaper

singles in columbus

best dating sites

chat cam girls

weird dating sites

2 adults

online dating adult

free dating married

uk dating free

yahoo friend finder

sex gay video

dating and hiv

100 dating free senior

sex chat up

kiss couples

london single women

naughtygirls

interracial websites

classified dating

singles click

on line sex dating

singles in pennsylvania

lesbian chat room sex

cyber girls sex

singles blogs

men speed dating

club swing

military single

singles detroit

best dating websites

colorado escort service

paid to get laid

singles tucson az

parents dating service

adults films

jewish dating scene

gay chat men

couples swap

dc swinger

us dating website

single women in edmonton

boston sex

free arab dating

submissive ladies

free single women

michigan christian singles

sex massages

single search

mypersonals

russia dating

detroit matchmaker

totally free internet dating

ebonyfriendfinder

singles dances massachusetts

uk sex contacts

sex for wife

ar dating

couples cheating

dating free online services totally

filipino women dating

indian dating in usa

live web cam free

3somes

escort private

best place to live for singles

kid singles

bellevue singles

altoona singles

find sex local

oral sex online

harrisburg singles

singel

moroccan singles

ragazze escort

housewives choice

www amigos com

woman looking men

online dating agency uk

adult fun

dating indian men

florida singles

denver dating sites

ohio swinging

girls video cam

hot spots for singles

kids online dating service

singles events washington

seks ru

swinger club florida

online dating sex

scort miami

worcester escort

paducah singles

singles organization

Business - Written by on Wednesday, February 11, 2009 9:36 - 0 Comments

Twitter as the basis of an open login scheme

Everyone hates juggling usernames and passwords. So all the great activity around OpenID, Facebook Connect, and more recently OpenID and facebook – all which suggest that mainstream use of open web authentication schemes are reaching critical mass.

I like the idea, a lot. However, I think it’s a bit early to bet on one horse – so why not add more to the mix. I like twitter’s generally open approach, so why can’t they play in this space.

So, here’s a proposal on how anyone can use twitter as an open authentication scheme to log into their site:

The first step is a login page (screenshot below) which gives you a unique one-time authentication key that is used to identify your session. In this example the one-time code is “82kjx_OneTimeAccessCode_IeZh9els” and it is designed to be tweeted (probably best to DM) to the web site owner’s account (“SiteTwitterName”in this case). By DM’ing the one-time code to the site owner you link your session to a specific twitter account, and by DM’ing it, you provide proof that you own that twitter account. To make this easier to tweet, you could add a “copy to clipboard link”, or “tweet to login” button/link which would automatically prepopulate the tweet in a browser window (see next screenshot).

Below is a sample of what the page might look like after you click the “tweet this to login” button.  You can imagine the button creating a popup window like this (if the browser allows popup windows). On twitter, it’s easy to prepopulate a page with a ready-to-tweet message like this. Just open a page with the URL:

http://twitter.com/home/?status=d%20SiteTwitterName%2082kjx_OneTimeAccessCode_leZh9els

And that link should give you a page similar to the one below:

Then, once you send the DM through twitter. The website can use the twitter API to read the DM and then make a connection between your twitter ID and the unique session key in order to authenticate you. At that point, your original login page can be refreshed, logging you in automatically. Voila, you are logged into a website using your twitterID as the account name:

A login scheme like this would work with twitter, but equally well with any messaging or IM service that’s sufficiently quick and also has an API. One of the best things about it is that it doesn’t require any endorsement of the service provider in order to use it for authentication either. You can even imagine doing this via a mobile phone too (either through cameraphone image, QR code (discussed here and here), IVR, OCR, or even a “sound” produced by the website that you could hold your phone up to).

Any suggestions about holes or problems with this scheme that I may be missing? Or ideas for improvements?

If anyone would like to implement the first working demo of this scheme it would be a great contribution to the public good.  I’d love to credit you with it here. Happy to share any demo code for it too if you wish.

…please contact me via twitter @crasheral if you would like to help kickstart this.



Comments are closed.

Coming soon in paperback! Help rename the paperback version of Macrowikinomics and win a one-hour webinar for you and your colleagues with Don Tapscott. Ends 5:00pm ET, August 31. Learn more.

Business - Oct 5, 2010 12:00 - 0 Comments

DRM and us

More In Business


Entertainment - Aug 3, 2010 13:14 - 2 Comments

Want to see the future? Look to the games

More In Entertainment


Society - Aug 6, 2010 8:19 - 4 Comments

The Empire strikes a light

More In Society