Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Why can't they use SSL to transmit oauth tokens to their server?


The point is not that it can't be done securely, it's that they don't want the hassle of being responsible for a large amount of sensitive information. By not storing the information in the first place they can guarantee that they won't be hacked and have their customers data stolen.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: