-
bgallagh3r I guess? Maybe? Certainly doesn’t seem worth it to me. shmick also mentioned potential credential-stuffing prevention, but there are other ways to “require a browser (JavaScript)” (read: attack with headless chrome instead of curl) without making password managers break.