Simon Willison’s Weblog

Subscribe

5th January 2009

The username/password key's major disadvantage is that it open all the doors to the house. The OAuth key only opens a couple doors; the scope of the credentials is limited. That's a benefit, to be sure, but in Twitter's case, a malicious application that registered for OAuth with both read and write privileges can do most evil things a user might be worried about.

Alex Payne

This is a quotation collected by Simon Willison, posted on 5th January 2009.