The importance of /me

18
30 May 2014 Bruno Pedro The Importance of /me picture © Werner Krause

description

My presentation at APIdays Mediterranea 2014, in Barcelona. Here's a great summary: http://saasinsights.getapp.com/war-over-online-identities-power-of-me/

Transcript of The importance of /me

Page 5: The importance of /me

53%

Social login preferencesJanuary – March 2014

source: Gigya

Page 10: The importance of /me

/me

‘me’ person ID

/account/verify_credentials

/user

Page 12: The importance of /me

What to expose• username

• user picture or avatar

• first name and last name

• language

• time zone

• country

Page 13: The importance of /me

What not to expose• e-mail address

• phone number

• billing information

• financial information

• mailing address

• current locationrisk

Page 14: The importance of /me

Use the appropriate OAuth2 scopes.

Page 15: The importance of /me

Use the appropriate OAuth2 scopes.

“access my basic information”

Page 16: The importance of /me

Expose safe information!

Page 17: The importance of /me

Offer a way to revoke permissions!