Hacker News new | past | comments | ask | show | jobs | submit login

With third party cookies going away, URL parameters are the only way to do SSO across domains. Not much you can do about it.



With SAML IIRC the IdP request is GET (but hey that one is fairly public - no credentials have been supplied yet) and the response is POST back to the origin site.




Consider applying for YC's Fall 2025 batch! Applications are open till Aug 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: