Short-ish sessions + SSO remove some of the false-sec-solutionism for this. SSO re-auth can be really quick without leaving open a password a manger. The shorter app session allows for reverification at the auth provider without complication at every app.
This link was posted by ColinWright 4 hours ago on HN. It received 89 points and 29 comments.