Risk
3/1/2013
03:47 PM
Connect Directly
Twitter
RSS
E-Mail
50%
50%

Google+ Social Sign-In Has Pros, Cons

Google+ Sign-In offers tighter mobile integration and additional controls. But will it allay user fears?

10 Best Business Tools In Google+
10 Best Business Tools In Google+
(click image for larger view and for slideshow)
Social sign-in can make it easier for users to log in to an organization's apps and resources, which theoretically makes it more likely that they will. Google's recently announced Google+ Sign-In service adds a level of integration and control that some other services lack.

Social login services enable users to register for and interact with sites and services using a preferred social network account, such as Facebook, LinkedIn or Twitter. But while such services make authentication relatively quick and easy, not all users are comfortable using them.

Gigya conducted a survey of 2,600 people and found that 53% have logged in to a website or mobile application using social login. Survey respondents who had used social login services cited username/password fatigue, streamlined registration and social syndication as the three top benefits. Survey respondents who had not used social login services cited data transfer, social posting concerns and uncertainty of data usage as the top three factors for skipping a social login option when signing in to a website or mobile application. Google+ Sign-In Service may not eliminate those fears, but it could help allay them.

[ Attend Interop Las Vegas, May 6-10. Use Priority Code DIPR03 by March 9 to save up to $500 off the price of Conference Passes. Join us in Las Vegas for access to 125+ workshops and conference classes, 350+ exhibiting companies, and the latest technology. Register for Interop today! ]

Whether they are building apps for the Web or for iOS or Android, developers can now enable users to sign in to an app with their Google credentials, including their Google+ info. "It's simple, it's secure and it prohibits social spam," said Seth Sternberg, director of product management, Google+, in a blog post.

With lots of social login options already out there, Sternberg said, Google is focusing on several key principles "to make things awesome for users." No. 1 on the list is simplicity and security, with Google+ Sign-In carrying over, among other things, Google's two-step verification option (user name and password, plus a numeric code that Google sends by text or voice call).

Google+ Sign-in also provides tighter integration with mobile. For example, Android users who log in to a site with Google+ Sign-in can download the site's mobile app with just one click. That's one advantage Google+ Sign-In has over Facebook Connect and other social sign-in mechanisms. Another is the ability to focus what you share and with whom -- Google+'s Circles model carries over, enabling users to avoid what Google calls "frictionless updates."

Developers can get more information here. Google is also making available Google+ Platform Insights, analytics tools that provide organizations with such data as how many users have logged into an app and how they are using it.

What do you think? Does Google+ Sign-In sound unique, or just like all the other social login platforms out there? Do you think Google+ Sign-In will help Google+ shed the "ghost town" image some would say it has? Please let us know in the comments section below.

Follow Deb Donston-Miller on Twitter at @debdonston.

Comment  | 
Print  | 
More Insights
Comments
Oldest First  |  Newest First  |  Threaded View
RCharles01
100%
0%
RCharles01,
User Rank: Apprentice
3/2/2013 | 6:33:00 PM
re: Google+ Social Sign-In Has Pros, Cons
Google is in the advertising business, in which they try to sell advertising space focused on specific and sometimes individual parameters. They surrendered their mantra "do no harm" a long time ago.

To protect my privacy, I do nothing with Google products except web search. I keep cookies turned off and do not use google+, Chrome or anything else by Google.

RCharles
lak669
100%
0%
lak669,
User Rank: Apprentice
3/2/2013 | 11:14:18 PM
re: Google+ Social Sign-In Has Pros, Cons
I cancelled my Google account due to this new "feature."

I also deleted the Chrome browser and use Firefox instead.
Andre Richards
100%
0%
Andre Richards,
User Rank: Apprentice
3/3/2013 | 3:24:04 AM
re: Google+ Social Sign-In Has Pros, Cons
Wow! I expected to see the usual Google apologist drivel in the comments but am pleasantly surprised to see I'm not alone in recognizing Google as an advertising/marketing company instead of a tech company. They stopped being about tech ages ago when that became a means to gathering advertising and marketing data--hands-down the most shameful bait-and-switch in corporate history. I started migrating off all Google products last year and have since freed myself of all their stuff except search (sadly, nobody has matched that yet.)

Anyone willingly signing on for Google's ostensibly free products nowadays is a fool. You are being data-mined for those free services and the only people who don't care about that are those who see no value in their personal data (and maybe it's because your personal data really does have no value.) There's lots of value in mine and see no reason to turn it over to the world's biggest marketing company because... dude, free maps.

Yeah. I'll pass.
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-4632
Published: 2015-01-31
VMware vSphere Data Protection (VDP) 5.1, 5.5 before 5.5.9, and 5.8 before 5.8.1 does not properly verify X.509 certificates from vCenter Server SSL servers, which allows man-in-the-middle attackers to spoof servers, and bypass intended backup and restore access restrictions, via a crafted certifica...

CVE-2014-7287
Published: 2015-01-31
The key-management component in Symantec PGP Universal Server and Encryption Management Server before 3.3.2 MP7 allows remote attackers to trigger unintended content in outbound e-mail messages via a crafted key UID value in an inbound e-mail message, as demonstrated by the outbound Subject header.

CVE-2014-7288
Published: 2015-01-31
Symantec PGP Universal Server and Encryption Management Server before 3.3.2 MP7 allow remote authenticated administrators to execute arbitrary shell commands via a crafted command line in a database-backup restore action.

CVE-2014-8266
Published: 2015-01-31
Multiple cross-site scripting (XSS) vulnerabilities in the note-creation page in QPR Portal 2014.1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) title or (2) body field.

CVE-2014-8267
Published: 2015-01-31
Cross-site scripting (XSS) vulnerability in QPR Portal 2014.1.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the RID parameter.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
If you’re a security professional, you’ve probably been asked many questions about the December attack on Sony. On Jan. 21 at 1pm eastern, you can join a special, one-hour Dark Reading Radio discussion devoted to the Sony hack and the issues that may arise from it.