This does *not* mean that Apple is requiring every app to use Sign in with Apple. This does not mean that apps that want to manage your Google Calendar will have to also add Sign in with Apple.
1
1
4
Yes, this is a little additional work for app developers to support another OAuth provider, but is really not that different from supporting both Twitter and Facebook, or Snapchat and Instagram.
1
1
3
At the end of the day, the benefit of signing in to apps is to be able to save stuff to your account so you can restore it later, and to get email notifications.
1
3
"Sign In with Apple" provides apps with both those features without revealing any more information about you than necessary.
1
1
2
So yes, Sign In with Apple is a good thing for user privacy, and will be a better user experience overall.
1
3
Is Apple using their position as gatekeepers of the App Store to force adoption of "Sign In with Apple"? Yes. Is this a bad thing? No. Does this affect you if you don't use an iOS device? No. Does this benefit people who have an iOS device? Yes.
1
3
7
Will we see other OAuth providers follow suit and start randomizing email addresses and user IDs returned to apps? I hope so! Ironically, Facebook first started doing this a few years ago when they launched app-scoped user IDs.
3
1
1
3
That is all. Thanks for listening.
2
10
Now I would just love to have a quick guide for using Apple Sign In as an Okta generic oidc inbound provider. Is this possible already ?
1
Replying to @DanieleVistalli
I actually just got this working last night!

Jun 5, 2019 · 1:34 PM UTC

2
1
Do you know where you can find the .well-known/openid-configuration on the apple url? Do they even use it?
1
I haven't found it yet. I wouldn't be surprised if they just don't have that endpoint
2
1
Replying to @aaronpk
Great, I look forward to try it out