HN Hall of Fame Weekly email

SQRL – Secure Quick Reliable Login

Screenshot of www.grc.com captured 2026-07-20
Page preview · captured 2026-07-20

Resurfaced independently across 11 calendar years, with breakout response in 2 of them.

submissions
20
submitters
20
observed span
2013–2026
peak thread · 135 comments
213 pts
latest 20+ return · 2017-06-01
213 pts

Submission timeline

2007–2026

One slot for every year since HN launched. Height is that year's peak points; orange marks a 100+ point or 50+ comment breakout. Select a bar to open its strongest thread.

First comments on top threads

HN comment order

I am unfortunately not bullish that this will pick up but there are strong arguments for this way to authenticate. - you would typically store the private key on a disk-encrypted app-whitelisted iphone, so that the computer you are browsing with, whether yours or a public machine, is never involved in the authentication. Effectively this achieves 2FA. And you don't care if the machine you browse with is compromised. - this does not rely on a third party, it is…

cm2187·213-point thread·

This looks like a much less polished version of Clef (https://getclef.com/). Clef is a really awesome app and they're already powering this type of integration for a few hundred websites. One of the founders is an HN regular, although I can't remember his username (Jesse, reply if you see this).

habosa·205-point thread·

Gibson has been hawking this for years. Skipping over some details, the biggest issue with it is that it's phishable, so it fails to address the single biggest threat most users face. In the five years this has been "under development" (!!!), FIDO and WebAuthn have made serious progress, providing a broadly-supported standards-based approach with native browser support and which addresses a more comprehensive threat model, including phishing and local user verification.

md_·18-point thread·

ice idea, but if you need to mitigate some issue by making the code also a clickable link, why would anyone ever scan it? Since opening some scanning utility will take more effort than simply tapping or clicking the link?

The first top-level comment from each of the four biggest threads, in HN’s own order. Excerpts are shortened; open a comment for full context.

Breakout years
2

100+ points or 50+ comments

Total points
507

reference only — not used in Hall rules or ranking

Total comments
293

reference only — not used in Hall rules or ranking

Every submission

DateTitle as submittedByPointsComments
2013-10-02SQRL - Replacement for usernames and passwordsFirst breakoutrichardjs205131
2014-04-19Secure Quick Reliable Loginglasshead96920
2014-08-14GRC's | SQRL Secure Quick Reliable Login  hboon40
2014-10-12Secure Quick Reliable Loginsaryant20
2016-06-17Secure Quick Reliable Loginb_emery20
2016-06-18SQRL stops the Internet's reliance on passwords todaykim080
2016-11-08SQRL – Secure Quick Reliable Loginfahrradflucht30
2017-06-01SQRL – Secure Quick Reliable LoginHall induction · Best thread · Latest 20+ point returnsr2213135
2018-11-05SQRL (Secure Quick Reliable Login)gitgud144
2019-02-15Obsolete username/passwords with SQRL protocolIggleSniggle10
2019-06-12Secure Quick Reliable Loginrichsu-ca60
2019-06-14SQRL: Secure Quick Reliable Loginwscott10
2019-08-27SQRL: Secure Quick Reliable Loginjohndcook124
2019-12-18Secure Quick Reliable Login – SQRLJustinGarrison50
2020-09-02SQRL: Secure Quick Reliable LoginBerislavLopac1815
2021-11-18Secure Quick Reliable Loginwarrenm10
2022-11-02SQRL Secure Quick Reliable Loginaxiomdata31621
2023-01-01SQRL – A highly secure one-time-code authenticatorsmodinfo22
2023-10-20SQRL (Secure Quick Reliable Login)dp-hackernews21
2026-03-29Secure Quick Reliable Loginmonista40