Live data from Hacker News

Sign in with Google in Chrome

underpassapp.com

161–170 of 313 posts

Re: Sign in with Google in Chrome

#161
post #50

Earlier quoted context omitted.

Of course! That's why I even added this to my uBlock filter list on mobile: accounts.google.com/gsi/client

How do you get ublock to work in chrome after the update? I tried a fix I found here but it resets every time I restart the browser

I don't. I use Firefox, on desktop and mobile. (Sorry, I should have mentioned this since OP is Chrome related.)

Re: Sign in with Google in Chrome

#162
post #125
post #21

The Chrome experience is actually part of a new standard, Federated Credential Management (or FedCM for short). The idea is to create a browser mediated login experience that gives the identity provider and web app what they need without being able to correlate requests across the Internet. I am working on an article on this topic. If you are interested in learning more, here's a video from a recent auth focused conf…

If it's a new standard, it must have… some kind of cross-industry support right? I ask because it looks like https://github.com/w3c-fedid/FedCM/graphs/contributors is mostly people who work at Google (I gave up once I hit people with ten or fewer commits)…

Isn't that the case for half of modern browsers APIs? Google develops whatever it needs for its own products into Chrome and then pushes it to W3C. Other browsers perpetually behind. They've gotten quite good at this strategy.

Re: Sign in with Google in Chrome

#163
post #83

I get why Google finds this advantageous, but I don’t understand why so many brands want to willingly diminish the impression and reputation of their web properties by adding “Sign in with Google.”

>want to willingly diminish the impression and reputation of their web properties because that's not what happening. The average Chrome user finds that feature useful, and personally I have to agree because having a sign-in option through the browser chrome (the non-content portion of the application, bad name in this case) is significantly more sane from a security standpoint than trusting the webpage operator. why…

> The average Chrome user finds that feature useful I don´t know about that. It displays on so many sites where I was not intending to login at all. If I want to login, I would have clicked on the websites' login button. This popup really blatantly shows that Google is everywhere, even if that was already the case. It's possible that this actually reflects badly on Google as a whole.

Re: Sign in with Google in Chrome

#164
post #21

The Chrome experience is actually part of a new standard, Federated Credential Management (or FedCM for short). The idea is to create a browser mediated login experience that gives the identity provider and web app what they need without being able to correlate requests across the Internet. I am working on an article on this topic. If you are interested in learning more, here's a video from a recent auth focused conf…

> The Chrome experience is actually part of a new Google non-standard

Fixed it for you.

Re: Sign in with Google in Chrome

#165

Earlier quoted context omitted.

I would never visit a site like pornhub in a profile that I was logged in to anything other than similar sites. note: I'm not excusing the feature but come on! Have some common sense before visiting a site like that? The place I hate the popup the most is mobile. It comes up moments (0.5 to 2 seconds) after the site loads (say tripadvisor) which means it's possible accept it by accident as it appears under your finge…

I would be shocked if that timing was not intentional and thoroughly tested for maximizing sign ups.

Completely agree. It’s like a game from their point of view— watching how many inadvertent logins they can capture.

Re: Sign in with Google in Chrome

#166
post #8

Earlier quoted context omitted.

You can also just not use chrome. It's still a problem that shouldn't exist and the blame for that falls entirely on Google and the websites that push google's crap on users

Edge has its own shenanigans. Solution: When signing into Gmail use Edge. When signing int Outlook use Chrome. That way Google/Microsoft can't use your credentials to sign into the browser itself.

Better: Use browsers not owned by search companies

Re: Sign in with Google in Chrome

#168
post #12

Does nobody find this intrusive when it appears on sites like pornhub? Of all places where I'd sign in with a Google account... holy heck, I was very surprised they chose to let Google do that nearly-fullscreen popup on their site upon every visit (since you visit in private tab, it's a fresh session every time) Even on reddit it annoys the heck out of me and I was very surprised they let this third party ruin the ex…

>Does nobody find this intrusive when it appears on sites like pornhub?

Porn sites are a testament that no amount of popups, ads, clickjacking, etc. can deter users from your site if your product is compelling enough.

Re: Sign in with Google in Chrome

#169

The crazy part is that the popup is not part of the DOM, it's injected by the browser *over the page content*. If it were in a browser toolbar I woudln't mind, but obscuring page content is just asking for an antitrust suit. I left chrome and switched to Brave 6mo ago because I couldn't get these "Sign in with Google" popups to stop. I tried both the chrome://settings/content/federatedIdentityApi option and the optio…

> just asking for an antitrust suit According to other commenters in here [0], it's an open standard and other identity providers are allowed, not just google [0]: https://news.ycombinator.com/item?id=44715875

Still an unforgivable violation of trust to have a floating popup over the content that's not part of the DOM and not part of the browser's normal native UI. I never want my browser to inject unblockable overlays over sites I'm trying to browse.

Re: Sign in with Google in Chrome

#170

Earlier quoted context omitted.

The firefox private window seems to work better than the chrome incognito mode. Maybe brave would be even better because I tested brave against fingerprinting libraries once and it was the best at avoiding any detection.

Brave confuses me. On one hand it seems to have quite good privacy tech, but then on the other hand there are instances of what seem to be quite shady actions. Both impressions come from comments and anecdotes, I have not looked into it myself.

Brave is the preppers/tea party/Jan 6th browser.

Deeply paranoid people can have occasional good arguments mixed in with their sociopathic traits. The fact that Brave didn't fork Firefox, or build their own like Ladybird implies to me that they are not really trying to improve the system. It's like Windows users extolling the virtues of the LTSC version.

Post reply on HN