So what's to stop some unscrupulous person putting this graphic on their site:
popping up this in a window
and basically phishing user data?
if a site who used facebook connect got hacked it could be an even bigger issue - as users are used to logging in on the site vs. a phishing site that doesn't have any trust built.
after a successful day phishing, they have the data and log into fb to spam all their new friends about the benefits of acai and colon cleanse or whatever else.
am i missing something? or is fb saying to its user base - burden is on you when you log into facebook connect outside of facebook.

popping up this in a window

and basically phishing user data?
if a site who used facebook connect got hacked it could be an even bigger issue - as users are used to logging in on the site vs. a phishing site that doesn't have any trust built.
after a successful day phishing, they have the data and log into fb to spam all their new friends about the benefits of acai and colon cleanse or whatever else.
am i missing something? or is fb saying to its user base - burden is on you when you log into facebook connect outside of facebook.