I've thought about this a lot.
I'd love a book on "Web Authentication Systems" that is a survey of approaches, real world examples, tradeoffs of different frameworks, core principles, etc.
I'd love a book on "Web Authentication Systems" that is a survey of approaches, real world examples, tradeoffs of different frameworks, core principles, etc.
They can be a slog, but the effort is worth it since the information is reliable.
I want to read the newer RFCs around JMAP next.