Hacker News new | ask | show | jobs
by sneela 147 days ago
But also

> violating the 24h promise on their own page

Their page reports: Vulnerability reports will always be responded to as fast as possible - usually within 24 hours.

That's not a promise. I agree regarding the sentiment: "Discord moved to a private, invite-only bounty"... and "refuse to hand over my ID".

1 comments

Usually discord ignores all issues related to invisibility leaks but responds very fast to other types of issues which is why i decided not to wait for weeks for a fix, instead publish it and watch it get fixed.