Hacker News new | ask | show | jobs
by dhouston 18 days ago
Fair criticism. The tricky part though with any scaled service is that for every legitimate case like this, there are many more bad actors trying to hijack accounts through exactly this mechanism -- so account recovery has to be conservative by default, which means legitimate cases sometimes get caught in the friction. Not an excuse, but it's a hard problem at scale and not just e.g. a cost-cutting thing or not giving a shit.
3 comments

> The tricky part though with any scaled service is that for every legitimate case like this, there are many more bad actors trying to hijack accounts through exactly this mechanism

I really wish more people understood this, especially on HN.

Account recovery flows are flooded with people trying to break into other people's accounts. It's going to be nearly impossible to make a system that can allow someone to recovery their account without also accidentally allowing someone to social engineering their way into someone else's account.

hey drew! fwiw it was actually NOT criticism of dropbox specifically - ive worked at and also run a company where this is the case - but for our smaller scale it is because we have support overwhelm and havent sufficiently figured out our own processes to triage everything well. not casting a stone here. you definitely have way more bad actor problems that mean you cant have nice things.
Is this guy really replying with AI?
Not every use of the em dash is Ai. I’ve long used it and always am accused of using Ai in responses — though I never do.
No indicator of AI writing is going to last forever. We really shouldn't over index on the oldest indicator (which is liable to decay first). People are starting to say "delve" more in verbal conversations. This treadmill will keep moving. Unfortunately we have little choice but to keep up with it.
It wasn't even an actual em dash —

It was two hyphens --

This is almost as good as the classic HN "Putnam" comment: https://news.ycombinator.com/item?id=35079

(Hint: No, he's not replying with AI. Two hyphens are not an em dash. Even then there's no hint of it being an AI response. Also the person is actually the CEO of Dropbox, the very person this thread is all about. You only have to click his username to see his posting history to see he's not an AI bot posting endlessly, his last posts (prior to today) were in 2024.)

Seems minorly AI ("Fair criticism.", emdash), but as someone who works adjacent to this space, the rest reads like something I'd write.
It wasn't an em dash though —

It was two hypens --