Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Pretty shitty to not even give a token amount bounty for such a broad hole


The next time someone finds their keys, they're going to find this article and commit them to a public github repo instead...


You don't want to push secrets in their raw form on GitHub, secret scanning would disable keys from supported providers.


Yea, they aren't going up on GH, they are going up on sketchy-site . ru


that's the point




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: