You are right. But you can play with our platform this weekends, and on next week we'll opening agent to open-source and enable security. We have some delay with SSL delivery. :(
When I see security as a second-class citizen on user-visible elements, I assume that the same philosophy was applied on the parts I can't audit, even after the front-end stuff was fixed.
I agree. Basically makes me distrust the whole thing inside and out; who knows what other bs engineering practices were used in non visible parts of the stack? Shipping is great, but please don't ship insecure stuff as a product you want customers to use. Please.
tpg|11 years ago
unknown|11 years ago
[deleted]
runlevel1|11 years ago
Asking people on HN to send their passwords in the clear is suicide.
antocv|11 years ago
This shit with "enable security" as after-thought has to stop.
meddlepal|11 years ago
unknown|11 years ago
[deleted]