Hacker News new | past | comments | ask | show | jobs | submit login

> But then… a couple of months later, Google completely removed the option for us to scan our own code. Instead, to keep access to Google Drive, we would now have to pay one of Google’s business partners to conduct the review.

What a racket. Smells downright anti-competitive The EU will have fun with this when it catches up.






Just as a data point, we paid $750 for one of these engagements (scan + some discussion about use cases etc) to one of Google's preferred providers. There were multiple options for providers.

It wasn't even that expensive. Ada security audit from tekta in Spain was under 4k.

There's nothing like a racket here. The list of certification agencies goes from KPMG at top end to smaller companies.


4k is not expensive in enterprise terms, but in small bootstrapped startup terms it is absolutely expensive.

And the issue is the other corporations may likely follow, so you have to stack hefty audit sum every year for multiple monopolistic cloud vendors because you made some cheap documents scanner app with convenient storage options for your user.

The EU absolutely loves adding requirements for certifications, so no I don't think they would get involved here. In fact, it's something they are pushing for in general.

> The EU will have fun with this when it catches up.

I don't think you know how the EU works.


> Smells downright anti-competitive The EU will have fun with this when it catches up

What? The EU wants to introduce certifications for all products and services, further kneecapping local innovation through regulation and costly certifications.

https://digital-strategy.ec.europa.eu/en/policies/cybersecur...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: