Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Because bad guys can just keep getting new certs when their old ones are revoked, unless you do identity validation (which costs money as it requires actual humans, so the certs can't be cheap or free).


Reviewing plugins costs somewhere around the same amount of human time/money, no?


If their review are as thorough as Android app's one, they cost about nothing.


Add-on reviews are done largely by volunteers.


the addons signage is an automated process.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: