Hacker News new | ask | show | jobs
by zbentley 86 days ago
This is right. It’s not about scoping auth, it’s about preventing secret misuse/exfil.

(Moved from wrong sub)