Hacker News new | ask | show | jobs
by darthbanane 1129 days ago
I agree but according to their goal of empowering developers with security awareness they should make it more clear that this is a server-side check and that the credentials were exposed in plain text, just not to the general public.

The screenshot says just amend the commit and all's good