Hacker News new | ask | show | jobs
by rubbingalcohol 4388 days ago
Unless they're using a browser extension, there's no way a user can trust this application. It's a web app. At any moment the developer or a malicious third party with unauthorized server access can remotely modify the JavaScript files to dump all data in plaintext to the NSA.