It's been frustrating dealing with their constant double speak and contradictions in their blog posts. The worst example was them saying that it's not a breach and then showing how they've been breached by the very definition of the term.
The only rational reason I can come up with for this duplicitous talk is for the shareholders; with this double speak they can reduce just how much their shares fall. I'm not on a high horse, I'm positive that most of our orgs was do the same thing.
And I'm not surprised that they're just like all other large companies that choose money/PR over accuracy. What is maddening is that they made it so hard to zero in on required information to help us assess risk; they're at the center of a lot of security workflows, and accurate information is more critical from them than it is from others.
I fear for Auth0 and what it ~~may~~ will become under Okta's 'culture'.
"How Propaganda Became Public Relations: Foucault and the Corporate Government of the Public is a philosophical investigation into the transformative effect propaganda has on us as individuals, on us as publics, and on society more broadly. I argue that propaganda does far worse than just lie to us: modern propaganda aims to transform us into the kind of subjects who carry out a particular line of conduct freely and as a key part of our identity. "
Every company engages in propaganda. The fact that you believe Okta from the start was because of their propaganda.
Also worried about Auth0. I was about to use it for a project when the acquisition happened and I’ve held off specifically because all of the negatives I’ve heard about Okta.
It's hard to justify Auth0 when you can use cognito or AFDS often for free as an addon to things you already need. Or something like firebase (or supabase or appwrite etc). I would trust any of those solutions more than Okta, which is pretty old school.
This has moved up my schedule for porting from Auth0 to Cognito. But, honestly, I'm still putting it off. From the outside, Cognito looks like one of those AWS systems that's just going to be a nightmare to learn and use.
Hiya. You should check out FusionAuth (disclosure: I'm an employee). We have a comparable offering to Auth0.
From talking to other users, Cognito is okay as long as you don't need any real customization. It's also great if you need to get AWS credentials on login. But there are plenty of folks who start with Cognito, run into its limitations, and move elsewhere (even if they stay with AWS for other service). Here's a story about someone who moved from Cognito to FusionAuth: https://fusionauth.io/blog/2020/11/18/reconinfosec-fusionaut...
Comments
It's been frustrating dealing with their constant double speak and contradictions in their blog posts. The worst example was them saying that it's not a breach and then showing how they've been breached by the very definition of the term.
The only rational reason I can come up with for this duplicitous talk is for the shareholders; with this double speak they can reduce just how much their shares fall. I'm not on a high horse, I'm positive that most of our orgs was do the same thing.
And I'm not surprised that they're just like all other large companies that choose money/PR over accuracy. What is maddening is that they made it so hard to zero in on required information to help us assess risk; they're at the center of a lot of security workflows, and accurate information is more critical from them than it is from others.
I fear for Auth0 and what it ~~may~~ will become under Okta's 'culture'.
"And I'm not surprised that they're just like all other large companies that choose money/PR over accuracy."
Whenever you hear "Public Relations" just replace it with "Propaganda" since that is what is always was.
https://blog.apaonline.org/2020/07/06/recently-published-boo...
"How Propaganda Became Public Relations: Foucault and the Corporate Government of the Public is a philosophical investigation into the transformative effect propaganda has on us as individuals, on us as publics, and on society more broadly. I argue that propaganda does far worse than just lie to us: modern propaganda aims to transform us into the kind of subjects who carry out a particular line of conduct freely and as a key part of our identity. "
Every company engages in propaganda. The fact that you believe Okta from the start was because of their propaganda.
Also worried about Auth0. I was about to use it for a project when the acquisition happened and I’ve held off specifically because all of the negatives I’ve heard about Okta.
It's hard to justify Auth0 when you can use cognito or AFDS often for free as an addon to things you already need. Or something like firebase (or supabase or appwrite etc). I would trust any of those solutions more than Okta, which is pretty old school.
This has moved up my schedule for porting from Auth0 to Cognito. But, honestly, I'm still putting it off. From the outside, Cognito looks like one of those AWS systems that's just going to be a nightmare to learn and use.
Hiya. You should check out FusionAuth (disclosure: I'm an employee). We have a comparable offering to Auth0.
From talking to other users, Cognito is okay as long as you don't need any real customization. It's also great if you need to get AWS credentials on login. But there are plenty of folks who start with Cognito, run into its limitations, and move elsewhere (even if they stay with AWS for other service). Here's a story about someone who moved from Cognito to FusionAuth: https://fusionauth.io/blog/2020/11/18/reconinfosec-fusionaut...