Page MenuHomePhabricator

[EPIC] Evaluate OAuth integration to align mobile sign-in experience with web platform
Open, HighPublic

Description

Context

This task explores how the native mobile apps could align the sign-in and account-creation flow with the web platform using a modern authentication mechanism such as OAuth 2.0. The goal is to assess technical feasibility, UX consistency, and security benefits—without building or shipping code at this stage.

Hypothesis

If we evaluate the user experience and technical changes required for the native mobile apps to align the mobile sign-in experience with the web platform, through exploring alternative mechanisms like OAuth, we can determine the feasibility of integration, in the interest of providing a more secure and consistent experience for users.

Scope

  • Review current web and app sign-in architecture.
  • Identify what OAuth/OIDC capabilities exist in the platform today
  • Document technical dependencies risks, and open questions to answer prior to development
  • Audit comparable app experiences that use in-browser Oauth flows
  • Produce recommendations and effort estimates

Deliverables:

Details

Other Assignee
Dbrant