• “Login with your Address”

    1. Insert address
    2. Letter is send
    3. Introduce code from the letter to authenticate

    Who will implement this?

      • Yes, and banks when you wanna activate online banking. Arguably, then it’s just for registering, and logging in then works differently.

        • Governments and banks love this, but I’ve even seen it with phone companies with e-sims. I quickly needed a new phone subscription, so I considered an e-sim, because I figured you could activate it by scanning the QR code from the screen. But no, they will mail me a piece of plastic with the QR code on it. So I went with a regular sim instead.

          • I see. Well, I think if you could just scan the code from the screen, that probably would open up all kinds of gateways for scammers. On the other hand, faking a physical address is a bit more expensive.

            • 3 months

              I mean, in Canada we can activate esims by scanning a digital qr code, and we have significantly less scam calls than the US does… Because we have much better laws about that sort of thing.

        • We had this too but instead of waiting for a letter you just had to go to any post office. It’s more practical because there’s no waiting

      • My government sorta did this before… *thuder crack* DIGITAL ID!

    • 3 months

      Probably Italy. All institutions and many households still have a working but unused fax line in Italy (which most photocopiers still support). Many documents can only be transferred either in person or by fax.

      We are not savages, we have low cost multi-gigabit optic-fiber household connections available in the majority of cities. Our bureaucracy is just anachronistic.

      • Can’t you just send official stuff via Posta elettronica certificata? I thought that was the point of these sorts of systems

        • 3 months

          PEC is usually not free (neither is fax, but a landline is more common than PEC). But also, I think it’s not accepted everywhere. Maybe you can also use posta raccomandata. But for that you must go to the post office in person and wait in line with other 10 pensioners, and it also costs, so you are probably better off just handing the document in person.

          • Ah that’s a shame, if they made it free (at least for communication with the state) i think it could clear up the fax situation a lot. They did this in my country and it got rid of the faxes

            • 3 months

              Sometimes banks give you a PEC address, but it’s mostly for communicating with the bank, and you are paying for it as part of the bank’s services.

    • 3 months

      OMG Verizon.

      I JUST saw this yesterday when resetting my password.

      I expect they just mail you a temporary password with 2FA turned off.

      • Exactly how I heard about the app. They must regularly be searching home purchases because it showed up pretty quickly after I moved in.

    • I’m currently waiting on two separate authentication codes in the mail so the answer is, it’s already implemented quite often.

      • It’s common for registration. Would be fun to have it for authentication as well. “My session expired. I need 3 days to log in again”.

    • My healthcare governmental insurance… last time I had to request a password. Took 2 good weeks. Fucking crazy inefficient process for an application that in the end exposes close to zero PII. The juicy stuff is behind another account with 2FA and more.

  • There’s the option to login with caution, but what if I want to login with reckless abandon?

  • Yes, you did: OpenID.

    I remember when I first read about it (late 2000s? not sure when), I thought it was an awesome idea and surely the web of the future would be full of “log in with OpenID” buttons.

    Instead it is now full of “log in with Google”, “log in with Facebook”, “log in with Microsoft” buttons.

    • It is just a framework. OpenID en OIDC are probably used by those companies to federate user access.

    • You can’t arbitrarily trust any OpenID implementation. I could easily have authelia report that I am schnurrito and the app has no way to confirm that.

      • I’m digging ‘login with caution.’ I like to think it’s mostly the same generic login page but with ‘Warning: you are logging into site X. This will involve the use of your sensitive login credentials. Take precautions against their loss or theft.’ and yellow/black hazard tape borders on every div.

        • Yeah, I agree with that one. That was actually the first one that caught my eye for the same reason. Something about login with a potato is just hilarious to me for some reason.

  • 3 months

    Login with Calculator: For when you don’t remember your PIN but you remember how you came up with it

    • 3 months

      Creating a pin with the number pad then having to remember it with a normal keyboard… 🫠

      • In some languages the base layer of the number row is taken up by weird characters so people prefer the numpad to holding Shift, and laptops without one sell poorly

    • Haha I used to do this all the time for my credit card PIN. Every time I had to enter it I had to get out a calculator as I didn’t remember the four-digit number but I did remember the expression I used to derive it.

    • 3 months

      It’s key-based client authentication. Just open your SSH key’s .pub file in Microsoft Publisher, then export to PDF.

  • 3 months
    • Log in with your local Linux account

    • Log in as administrator

    • Log in via carrier pigeon

    • Psychic log in

    • Log in using public shared account (that anyone and everyone can log into and use)

    • Log in your pets

    • Log in via Hallmark greeting card (only available on your birthday or major holidays)

    • Log in with blood sacrifice

    • I started running out of neighbours so I switched from blood sacrifice to letting my pet carrier pigeon login for me anytime I ask him to do it.

    • 3 months

      I recall a YouTuber who used their cats butthole for their fingerprint sensor to unlock their phone. It could be that they wanted to try it but never did, though. It’s been like a decade.