e-Preprint archive nrpl.xyz

[Proposal] Changing User Creation Process #5

open opened by vaporize.me

Currently, adding a new user requires the server admin to manually create the account on the server, but it's a quite burden for both(admin and user) and it can be related with security concern since server admin knows the user's password in plain text.

I think this process should be changed so that user can create their account on the webpage, and server admin can accept/reject the user creation request via admin panel (either CLI or GUI).

I think we should actively move on to atproto oauth (https://tangled.org/zeu.dev/atproto-oauth-deno). Issue #4 suggests to use the did whitelist alongside oauth, so this might help.

Yep it seems that oauth can solve these hassle things!

sign up or login to add to the discussion
Labels

None yet.

assignee

None yet.

Participants 2
AT URI
at://did:plc:y2rmteefnuyglpyoski6bzzv/sh.tangled.repo.issue/3mf4wcjd6qy22