The whole concept of Twitterank is questionable
Twitter this week was abuzz around the launch of a new site that ostensibly provides you with a numerical ranking, based on your followers, those you follow, and their collective clout.
Twitterank, like Twitter Grader and others, is trying to deliver some kind of service to separate the influential from the less influential, as if we need more ways to do that. But the piece that has everyone stirring about their goals is the fact they ask for your Twitter user name and password. Today, I checked out Twitterank, just like so many others, and gained a numerical score that may have no value at all. In that process, I trusted the developer and the site with my Twitter login data, and frankly, that's of no issue to me in any way. As I said the other day, I believe people are inherently good, and if you're trying to harvest a host of passwords, Twitter wouldn't be the place to do it in secret by any means. So I have no concerns.
The whole concept of Twitterank is questionable. First, why would anybody care what their rank was? Second, what would a numerical score of 50 mean? What about 100 or 200? No idea.
Additionally, the service's default checkbox that sent the results of your Twitterank score to Twitter surprised many people, myself included. I was just checking out the service to see what the fuss was about, only to find people making comments on my Tweet, which had made its way to Facebook and FriendFeed as well. Sure enough, my Twitterank of 230.65 had been released in the wild.
So the service itself has some oddities, even if it was my fault I left the box checked. But in my opinion, that they ask for your login credentials isn't one of them. Many other third party services, from Twitter Karma to Social Too ask for your Twitter login and password. According to developers at those sites, the goal isn't to load up on user names and passwords, to start tweeting under your ID, but instead, they are forced to thanks to Twitter not having implemented OAuth. Twitter Karma writes:
"Unfortunately, until Twitter implements OAuth, applications that act on behalf of Twitter users, such as Twitter Karma, require your Twitter username and password to access your data."
But the concern around such a new service, which initially didn't have a name associated to it, had many wondering if its goals were nefarious. ZDNet called Twitter users gullible, and Mashable asked if the service was stealing your password.
The downsides of somebody hacking into my Twitter account and getting my credentials are low to begin with. In theory, if my account were compromised, they could Tweet on my behalf and make me look like a fool for some time, until I managed to get to Twitter support. In the meantime, you'd be sure to hear about it, and I assume others would be vocal in my favor. Another concern would be if you or I used the same login and password combination on other services. The perpetrator could then guess your ID on other services, or even access your financial records or anything else sensitive. But again, given the other Twitter developers' comments in regards to OAuth, I tend to believe this is something the coders are working around, and I don't think this is a mass account grab.
Late this afternoon, following the initial voiced concerns, the author rapidly put together a blog post answering some questions. See "Some follow up������" In that post, he, like Twitter Karma, points back to the microblogging service's limitations in terms of needing the user name and password combo.
"There are ways for Twitter to make that data available without requiring you to give out your password to 3rd party sites (Facebook, Yahoo! and others have such systems) but Twitter doesn������t yet offer those options to developers. As soon as Twitter adds more secure authentication mechanisms, I������ll switch to that."As right as we are to be smart about where we put our login data, I don't think we should be so quick as to raise questions about what people's negative motives could be. For every 1 bad apple, there are easily 99 good, and the bad apples don't usually get away with nonsense for too long. As for those of you who really do want to tweet on my behalf, send me an e-mail, and just maybe I'll give you my password. Or not.
Related Companies, Investors, and Entrepreneurs
Startup/Business
Joined Vator on
What is Twitter?
Twitter is an online information network that allows anyone with an account to post 140 character messages, called tweets. It is free to sign up. Users then follow other accounts which they are interested in, and view the tweets of everyone they follow in their "timeline." Most Twitter accounts are public, where one does not need to approve a request to follow, or need to follow back. This makes Twitter a powerful "one to many" broadcast platform where individuals, companies or organizations can reach millions of followers with a single message. Twitter is accessible from Twitter.com, our mobile website, SMS, our mobile apps for iPhone, Android, Blackberry, our iPad application, or 3rd party clients built by outside developers using our API. Twitter accounts can also be private, where the owner must approve follower requests.
Where did the idea for Twitter come from?
Twitter started as an internal project within the podcasting company Odeo. Jack Dorsey, and engineer, had long been interested in status updates. Jack developed the idea, along with Biz Stone, and the first prototype was built in two weeks in March 2006 and launched publicly in August of 2006. The service grew popular very quickly and it soon made sense for Twitter to move outside of Odea. In May 2007, Twitter Inc was founded.
How is Twitter built?
Our engineering team works with a web application framework called Ruby on Rails. We all work on Apple computers except for testing purposes.
We built Twitter using Ruby on Rails because it allows us to work quickly and easily--our team likes to deploy features and changes multiple times per day. Rails provides skeleton code frameworks so we don't have to re-invent the wheel every time we want to add something simple like a sign in form or a picture upload feature.
How do you make money from Twitter?
There are a few ways that Twitter makes money. We have licensing deals in place with Google, Yahoo!, and Microsoft's Bing to give them access to the "firehose" - a stream of tweets so that they can more easily incorporate those tweets into their search results.
In Summer 2010, we launched our Promoted Tweets product. Promoted Tweets are a special kind of tweet which appear at the top of search results within Twitter.com, if a company has bid on that keyword. Unlike search results in search engines, Promoted Tweets are normal tweets from a business, so they are as interactive as any other tweet - you can @reply, favorite or retweet a Promoted Tweet.
At the same time, we launched Promoted Trends, where companies can place a trend (clearly marked Promoted) within Twitter's Trending Topics. These are especially effective for upcoming launches, like a movie or album release.
Lastly, we started a Twitter account called @earlybird where we partner with other companies to provide users with a special, short-term deal. For example, we partnered with Virgin America for a special day of fares on Virginamerica.com that were only accessible through the link in the @earlybird tweet.
What's next for Twitter?
We continue to focus on building a product that provides value for users.
We're building Twitter, Inc into a successful, revenue-generating company that attracts world-class talent with an inspiring culture and attitude towards doing business.