Hacker News new | ask | show | jobs
by kayge 4786 days ago
Nice and simple, I like it.

Potential security/privacy issue though: I can retrieve anyone's submission(s) with some simple cookie manipulation. I suppose this is a side-effect of the "no logging in" method, but it might be nice to allow people to delete their posts.

1 comments

I'm a collaborator on the project and we're tidying up all these loopholes, but thanks for the heads up. Matts response is "Oops, I’m a designer!".
Haha, cool. There's another similar issue (which your team may already be aware of) that I'd be happy to point out less-publicly if you want to send me an email. Anyway, nice project!