Hacker News new | past | comments | ask | show | jobs | submit login

Easy. Instead of sending a username and password, generate a long key of some kind that would be unique to each user and use that instead.



Yep, that's what I meant by API key above. I could also home my Android skills by making a simple app for it.


How would that be any different, security wise?


It would not contain information used for login.




Consider applying for YC's W25 batch! Applications are open till Nov 12.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: