Hacker News new | ask | show | jobs
by fulldecent 3351 days ago
This is good thinking. But you need iron tight wording when spelling this stuff out.

In your contact with companies you should say "Failing to fix this issue would be a violation of reasonably assumed security practices as required in LAW..."