Hacker News new | ask | show | jobs
by solox3 5169 days ago
While it might be the case that they have a vulnerability somewhere, in that [the email address of every user is easily mined from the site], there are few reasons to [write code that will allow anyone to harvest the email addresses].

Yes, [businesses should be more careful about how they treat customers and how they treat customer data], and I agree you should submit some sort of proof-of-concept to the web service, privately, to improve [how they treat customers and how they treat customer data].

1 comments

Yes, I would definitely keep it private. How could I say I cared about the disclosure of personal data and then disclose it? Thanks Solo3.