This audience loves facebook, uses it every single day and authorize all kind of applications without a single thought about security. Why would they when their password is usually password or 123456.
I understand it may comes as a rant but it's not. If Github would force all developers to use Facebook login, then I would agree with your comment. But for a social app like this?
We have plans to roll out a separate stand-alone login soon, where you can fill out a profile with whatever information you choose to include
2) If this isn't enough control, there are chrome & firefox extensions to give you more granular control over the authorizations you allow, though disallowing certain things can cause issues sometimes.
We're in the tech space... If I designed a new tool for XBOX Live stats and posted to Show HN, it would follow that you would have to 1) be an XBOX Live member and 2) give me your information... I see using Facebook sign in as an extension of Facebook and not the other way around.
Just a matter of opinion from all around, though, obviously.