Bob Koure
Mar 8, 2021

--

Another potential point of information leakage is OpenID. If you sign into any web sites with [Facebook, Google, mSoft, Amazon, etc.], the OAuth server authenticating you has a interaction with that site, and easily could record it.

Yes, it's pretty straightforward to run your own OAuth server, but then what websites accept its authentications? I've gone back to individual passwords, using a pw manager. BitWarden makes this fairly painless.

Anyone know of a generally accepted OWA server based in a GDPR country?

Also, no mention of DuckDuckGo as a way to anonymize search engine access?

--

--

Bob Koure
Bob Koure

Written by Bob Koure

Retired software architect, statistical analyst, hotel mgr, bike racer, distance swimmer. Photographer. Amateur historian. Avid reader. Home cook. Never-FBer

Responses (1)