Hacker News new | ask | show | jobs
by wizzwizz4 2391 days ago
Instead of "you are not permitted to reverse-engineer", maybe "you are not permitted to interact with the server except through the user interface produced by a web browser in accordance with the HTML-based instructions sent to your machine by our web server unless given explicit permission by us"; that effectively prevents people from using that reverse-engineered knowledge to attack your site, whilst still permitting bug reports.