Hacker News new | ask | show | jobs
by bruceboughton 5855 days ago
You should never expose internal incremental user ids in URLs like these. Have a combination of guids that links to the user id in your database.