Hacker News new | ask | show | jobs
by tomschlick 1397 days ago
I'd imagine it's less about setup complexity and more about reducing the attack surface of the main domain where any number of mistakes on the subdomain could expose a vulnerability for the main domain as well.
1 comments

Not in my experience. It's about avoiding bureaucracy.