Hacker News new | past | comments | ask | show | jobs | submit login

Remember, though: Do not run the open sync-engine on a public-facing server!

It uses no effective authentication and everyone can just login to your accounts (due to /accounts and /n, the endpoints displaying the auth codes, being public)

Guidelines | FAQ | Support | API | Security | Lists | Bookmarklet | Legal | Apply to YC | Contact