Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I suspect that since they only closed the hole late Sunday or early Monday, that they decided the number of new accounts was so small, it wasn't worth introducing the complexity (and potential bug/insecurity sources) to handle such a small percentage of the user-base. A reasonable tradeoff since getting this audit done in a timely manner is more important than waiting to handle edge cases such as yours.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: