Hacker News new | past | comments | ask | show | jobs | submit login

But why this doesn't needed if you use numerical ids?





If you work on a sufficiently long lived system, you also discover that you usually want string ids instead of numerical ids.

Among other things, numerical ids are subject to enumeration attack (especially if exposed in a GET url parameters).




Applications are open for YC Summer 2019

Guidelines | FAQ | Support | API | Security | Lists | Bookmarklet | Legal | Apply to YC | Contact

Search: