Hacker News new | ask | show | jobs
by speleding 5222 days ago
As homakov suggested, you could at least define *_id attributes as "protected" by default. Only being able to change attributes on your own records probably causes a lot less grieve.