@aaronpk
OAuth question for you, if you have the time.
I was asked at work recently, regarding API Gateways and customer facing applications, if having a standard set of scopes across all APIs is a "good practice" or a "bad practice."
One concern a collegue and I voiced was that if an actor compromised one API, they have basically compromised all the APIs, since the scopes would apply across all of the end points.
Aside from that concern, are there any other reasons they should avoid this?
I have dealt with a few job change related stressors over the last couple years, and as such, have neglected my gamedev hobby work.
I think now that I'm on here, and away from Twitter and it's rage-bait, I can actually wind down and focus again.
Well, I'm sure this is going to be a take that appears on the regular over the next couple weeks.
I'm finally done with Twitter. No I wont be calling it "X" because I'm not a child.
Hopefully this place continues to grow and mature.
@aegis242
Welcome to the party ♥️