Hi,
I have a question about user data and privacy.
Imagine that you sign up in my product (maybe with OTP) and add your phone number and email to your profile on it. Then, you sign up in my partner's product or service and you find that your username, email address, and phone number is the same. and even you change them, they also change in the first product that is not related to another one!
How do you fill about this? Is it good or ...
not good at all, it would raise so much questions. Data re-selling is pretty much active topic today. I'm not saying you're reselling it, but try to look at it from the end-user perspective
But, What if we tell users that is it an integrated user service?
well, from my perspective it still looks shady. what are you solving for me, saving time necessary to retype and refill that data on another service? Not something that is my among my top 10 problems. Then again, if I see that you are offering it as a service, it would be nice to see to which partners are you forwarding my data, and then again, I can't trust you that it's the final list.
I think you would need to be upfront about it and offer it as a type of "single sign on with profile" solution. Each partner app would have to ask permission to link to and use profile with revoke option provided.
It's a part of a service that should be used as first-party, and can't be used as a sign in with.