Hacker News new | ask | show | jobs
by _Codemonkeyism 3119 days ago
Wow.

"Reported in March 2017, emailed them 9 times about the issue since then. Still unfixed as of now."

2 comments

We have corresponded many times about this issue, and have made many changes over that period.

It's not as simple as just shutting down the open proxy because we need an open proxy to adequately protect users' privacy on our site, e.g. for image search. It just needs to be more locked down and more obvious it is a proxy, which we are doing right now (half done already -- CSP rolled out fully, new domains in process).

+ 1
"Update: To clarify, they did respond to my emails, they say they're working on it."