On 14 January 2018 at 04:59, Thomas Kluyver <tho...@kluyver.me.uk> wrote:
> Based on the numbers Donald gave, I don't think it's worth spending more
> time investigating the demand. If there really is demand, people will make
> it known on issues etc., and it could be considered for Warehouse further
> down the line. For now, passwords are working, and there are more important
> things to build and maintain.

Something else I'll note here is that there are a few things we want
to explore post-Warehouse migration that require PyPI to serve as its
own identity provider:

- two-factor authentication support
- orgs, teams, and role-based access control
- revocable CLI (and other app) token support

Adding back social auth some time post-migration will likely still be
an option (similar to the way Atlassian allow social auth logins to
establish and authenticate for BitBucket accounts), it would just be
lower priority than the above (and leaving it out for the time being
should simplify the development of the above capabilities).

Cheers,
Nick.

-- 
Nick Coghlan   |   ncogh...@gmail.com   |   Brisbane, Australia
_______________________________________________
Distutils-SIG maillist  -  Distutils-SIG@python.org
https://mail.python.org/mailman/listinfo/distutils-sig

Reply via email to