Hacker News new | ask | show | jobs
by marcosdumay 839 days ago
The situation is greatly improved if you make the link short-lived and if you put the non-public data in a region of the URL that expects non-public data, like in the password, as in "https://anonymous:32_chars_hash@myphotolibrary.example.com/u...".