I'm still stuck on why I have to create a password-equivalent API token, and then store it on my hard drive if I want an at-all-convenient workflow.
"We made it more secure!"
"How is storing it on my hard drive more secure"
"Just have it expire after a week!"
"How is it more secure now, seems like now there are two points of failure in the system, and anyway I keep hearing about security problems in github which this hasn't been a solution to any of them"
"SHUT UP THAT'S HOW"