Hacker News new | ask | show | jobs
by papaver-somnamb 469 days ago
At risk of high-jacking this thread, some Merchants of Record (i.e. Paddle) require biometric authentication of company majority owners, which I find too invasive. Are there any Merchants of Record that don't?

Sure, they handle taxation amongst many other conveniences. But despite their assertions of security and safety, we identified dumps for sale on the darknet of such biometric DB data exfiltrated from (continuing the Paddle example) Onfido. It left a sour note in our mouths and a lingering feeling of distrust, especially after we were recently the target of a spearfishing campaign using data obviously sourced from such auth providers.

1 comments

I don't remember seeing anything like this with Lemon Squeezy.
Because they were (are) small and dont have to care now.