Dan Romero
@dwr.eth
First instance of log in to a website with Farcaster identity directly from a frame click. Took less than an hour. It's happening.
3 replies
1 recast
20 reactions
Tony D’Addeo
@deodad
important thing to note is these are messages signed by delegated EdDSA keys so any app you’ve connected could sign you in great for some things but needs to be considered
2 replies
1 recast
5 reactions
androidsixteen
@androidsixteen.eth
Is the main issue that you are giving the connected app perms to use your credentials more liberally?
1 reply
0 recast
1 reaction
Tony D’Addeo
@deodad
the potential issue is apps using Frame Messages, which are valid if signed by any of your connected apps, for an auth mechanism to their service since that means any connected app can sign in as you it's ok for an app that doesn't have any important private data (like a simple game or yoink dashboard)
1 reply
0 recast
0 reaction