organized-app icon indicating copy to clipboard operation
organized-app copied to clipboard

[FEAT] Simplified login

Open joaochris opened this issue 2 years ago • 15 comments

Hello, I think the login process could be more simplified.

A screen asking just for:

Username/email: Checkbox: Remember my username Type your password: Checkbox: Keep me logged in

And if necessary, add security questions.

And regarding Keep Me Logged in, there is no timeout to log in again. In other words, we would only be asked to log in again if we logged out of the account.

joaochris avatar Oct 01 '23 11:10 joaochris

Hello @joaochris, thanks for your comments and suggestions.

And regarding Keep Me Logged in, there is no timeout to log in again. In other words, we would only be asked to log in again if we logged out of the account.

I will work on implementing this change. 👍

Username/email: Checkbox: Remember my username Type your password: Checkbox: Keep me logged in

And if necessary, add security questions.

I think that what we have is already simple since it follows the standard login mechanism of most websites. 😁 For most of users using the oauth provider login is quite straightforward: They just choose Google, or Yahoo, etc... and they are automatically signed in, since generally their email account remains connected on their personal device. Few additional steps are required for those choosing the Email Link Authentication. Also, MFA verification will now be only displayed if they choose to enable it.

rhahao avatar Oct 01 '23 12:10 rhahao

Thanks. But in my case, for example, when I log in with Google it asks for authentication. I would like to remove this.

joaochris avatar Oct 01 '23 15:10 joaochris

Yes, if the Google account is not yet connected to the browser you are using, it will ask you to authenticate. For now, if you do not wish to consent to this login method, only the email link authentication is available. May be in the future, we may come up with another method of authentication and we can build something new. 💡

rhahao avatar Oct 01 '23 16:10 rhahao

But are you referring to authentication from the Google Authenticator app?

joaochris avatar Oct 01 '23 16:10 joaochris

Using one of these 4 providers:

image

rhahao avatar Oct 01 '23 16:10 rhahao

That's right, when I log in with Google, I have already given authorization for the screen that appears. But an MFA verification appears and when I created my account I chose the Google Authenticator app. Is there a way to remove this second verification?

joaochris avatar Oct 01 '23 16:10 joaochris

Yes, we can disable it. And I am currently preparing an update to let the user disable their MFA. For now, I can disable it for your account.

rhahao avatar Oct 01 '23 16:10 rhahao

And also, I think the Google Authenticator app can be used without sign in. 😁 This is how I setup mine here.

rhahao avatar Oct 01 '23 16:10 rhahao

Great! That's what I was talking about :D. This makes logging in very simple.

joaochris avatar Oct 01 '23 16:10 joaochris

After that, the next step is to keep the user always connected :D

joaochris avatar Oct 01 '23 16:10 joaochris

@joaochris: Just to show you my Google Authenticator app with the "not connected" option:

image

rhahao avatar Oct 01 '23 16:10 rhahao

hey is everything good with you? I logged in, and it still appears to verify with Authenticator. What you showed in the print, I couldn't do, because I have other services connected to my Google account.

image

joaochris avatar Oct 22 '23 12:10 joaochris

Hello @joaochris, all is good thanks! Hope the same for you.

What you showed in the print, I couldn't do, because I have other services connected to my Google account.

Oh ok, then you can just use the Google Authenticator as you normally use it. I’m just showing that it can be used offline if some user want to it for the first time, and they don’t want to use an email address to sign up with that app.

I have not yet deactivated the two-factor verification for your account, and the feature to disable it by each user is yet to be completed. Do you want me to disable it on your behalf until then?

rhahao avatar Oct 22 '23 12:10 rhahao

Oh ok, then you can just use the Google Authenticator as you normally use it. I’m just showing that it can be used offline if some user want to it for the first time, and they don’t want to use an email address to sign up with that app.

I understand now. :D

I have not yet deactivated the two-factor verification for your account, and the feature to disable it by each user is yet to be completed. Do you want me to disable it on your behalf until then?

Oh, okay. Yes please!

joaochris avatar Oct 22 '23 19:10 joaochris

😄 The 2FA is now disabled for your account. At any time, you can re-enable it in the User Profile page. Thanks

rhahao avatar Oct 23 '23 03:10 rhahao

Hi @joaochris, an update to this one: a simplification has been made to the new Organized app that will be released in the future. Stay tuned! 😊

rhahao avatar May 21 '24 07:05 rhahao