Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> It can still be used for tracking.

This doesn’t make sense. The whole point of using IDs in this way is in an authenticated context.

Did you think I was suggesting that this ID would be accessible to any website without asking? This is something you would send as part of a registration step. So, for instance, if you spam Hacker News, you get banned, you try to register again, it receives the same ID as before and knows not to let you register.



Every website would just move on to force people to register. That's already happening - good luck browsing public posts on Twitter/X.


Again, this is a mechanism for making existing auth more resilient.

As you note, websites can already force people to register, so this isn’t adding anything new there.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: