originally posted in:BungieNetPlatform
View Entire Topic
The number one source of complaints and worries with mobile apps is users complaining they have to enter their Microsoft or PSN username and password into an app before it can access the private Destiny API. They are quite right to be worried as those credentials give access to credit card based services, private email and highly valuable game libraries with related data.
I doubt any of us want to touch these details, but we have no choice. There is no genuine Oauth or other way to authenticate our apps to get the Bungie account details and access the full API. Can you give us a heads up on if you have any plans to address this?
English
#Destiny
-
Even thou technically if they are entering the credentials into a website you could get them from there, you shouldn't be asking them to enter credentials in custom login pages, use the official Microsoft and PlayStation pages and that should be enough for users.