The importance of /me

Post on 10-May-2015

510 views 0 download

Tags:

description

My presentation at APIdays Mediterranea 2014, in Barcelona. Here's a great summary: http://saasinsights.getapp.com/war-over-online-identities-power-of-me/

Transcript of The importance of /me

53%

Social login preferencesJanuary – March 2014

source: Gigya

/me

‘me’ person ID

/account/verify_credentials

/user

What to expose• username

• user picture or avatar

• first name and last name

• language

• time zone

• country

What not to expose• e-mail address

• phone number

• billing information

• financial information

• mailing address

• current locationrisk

Use the appropriate OAuth2 scopes.

Use the appropriate OAuth2 scopes.

“access my basic information”

Expose safe information!

Offer a way to revoke permissions!