Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

No, that's exactly the problem the post is complaining about. It still results in credentials being sent in plaintext in the original request.


Right, but the problem will be caught when the app is still in development. Then the devs will fix the app and by the time it gets to end-users, it won't do that anymore.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: