Are there any Open ID Connect IdPs that are known to respect user privacy?
I'd propose you take a look at passkey, which allow for a very convenient, but privacy-friendly alternative to social SSO.
You can even combine social SSO with passkeys. Then users could sign up to your sites with one click through Google or Apple, but any subsequent login can happen between you and the user with a passkey. That's how we are doing things at hanko.io
- if the SSO server is down (or the docker container), all other services are un accessible by your users
- Any breaches to the SSO is a breach to all other services.
- You should have more work done on enforcing passwords/login policies, creating some sort of granular access, support MFA, etc.