Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

>When I've found security vulnerabilities in somebody's code, I can't think of a time I ever thought about GPG-signing my notice to them.

It's not authenticity that matters here, it's confidentiality.



Basically nobody cares. Vulnerability researchers don't use GPG either.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: