Hacker News new | ask | show | jobs
by ilyt 1281 days ago
Yeah because it is oh-so-easy to ensure your regexp matches only your company's tokens and not 10000 other companies tokens /s
1 comments

And? What are you going to do with a singular token that you don’t know what company it belongs to? But obviously those devs at GitHub don’t know what they’re talking about so they’ll gladly notify two companies at once.

It’s super easy too: take a look at GitHub’s tokens, they all start with gh.