Enhance the built-in authentication capability by adding social/OAuth login providers out of the box.
Try to find a way for the developer to define if they'd like to pull some additional info from the social provider while they're at it (where available), and see if there's a nice way to standardise the field names thereof.