Hacker News new | ask | show | jobs
by xaitv 1116 days ago
> People who write review would have to upload recent pay slip or after when committing review provide their email at employee to receive some passcode active within 2 months

If I was leaving a review, even if I cared about it a lot, and I'd have to upload a recent pay slip I'd just leave the site and not bother with it anymore.

1 comments

Any data-breach would be an utter nightmare for the users with that sort of info on the site.
The idea would be not to store those data on server only process it and keep anonymous data or even only aggregated. Some processing maybe could be done also on the client or payslip user name masked after verifying it matches passport holder locally before sending to server. Other option using blockchain with open source repo.

I know a lot of HN users are in theory very distrustful about anything new but in practise still:

- using VPNs (even paid one don't guarantee your data is safe)

- tor

- open source password managers (w/o reading source code)

- Dropbox etc

- compiling random open source code first without reading

- having no issue telling hour rate or daily rate recruiter on linkedin when asked and attaching resume.

So what's so very sensitive in payslip if you already providing this kind of information to any recruiter?

> So what's so very sensitive in payslip if you already providing this kind of information to any recruiter?

Domestic violence victims who are trying to avoid being found? People seeing political asylum? Anyone who wants to maintain privacy? There's a number of reasons you would not want this information in pastebin.

> So what's so very sensitive in payslip if you already providing this kind of information to any recruiter?

I know 0% people out of my circle who would share payslips with any potential employers, even less any recruiter, while we frequently talk about our pay with each other and co-workers at our work.

Ok but genuine question why? Does in other countries payslip has any other more sensitive information than name, company and salary? Any more sensitive information than CV you attaching to recruiter?
Yes: in the US, your SSN (or EIN) is on every single paystub. (You could always manually redact it if some third-party asks for a copy).

By the way, another huge reason: images of paystubs can be and have been used by identity thieves to open fake accounts/loans, remotely.

> - open source password managers (w/o reading source code)

The open source qualifier here is weird, like you're implying closed source managers are preferable, but then your objection can hardly be over reading the source code