Hacker News new | ask | show | jobs
by jeroenhd 1349 days ago
Allowing this person's gift card shop but not allowing POST requests is clearly overzealous in my book.

I understand that some companies want to block certain websites. However, if you're in such a restricted network, I wouldn't expect a website like "Thankbox" to work at all.

An overzealous filter like this prevents normal POST requests (logging in to websites, etc.), lets through random websites (gift card website) and allows all manner of data exfiltration and other nasty stuff. The goal is laudable, the implementation is laughable.