Background
Understand what a OAuth sign-in might look like on mobile and how it compares to our current UX.
Deliverables
- Screenshots with Annotations of:
- Current Wikipedia web login
- Desired web login experience
- Current app login (iOS and Android)
- Reference Apps (GitLab, Reddit, Mastadon, etc.)
- Heuristic
- Entry points
- Trust cues for login handoff
- Privacy/Consent explanations
- Error states and recovery process
- Accessibility and localization differences
- Recommendations
- How should we preserve consistency and trust if OAuth is introduced
- Copy and component updates that we would need if we proceed with these changes
Questions to Answer
- How do comparable apps reassure users when leaving their current state for OAuth
- How are cancellations, bad credentials, or unverified email explained?
- After signing in, how do apps return users to the action they started?
- Do flows work with large text and screen readers?
- Do OAuth pages match native branding and theming (dark mode) without confusion?