Hacker News new | past | comments | ask | show | jobs | submit login

PSA: it should be obvious that it's a really dumb idea to use random new encryption tools from GitHub (sorry, author)



> it should be obvious

It should be, but a lot of developers don’t have formal security training, nor especially management which may end up selecting the contractors/developers and deciding on the technical approach.

If it’s explicitly not production ready, it should probably say so up front, not advertise itself as “strong encryption”. However painful that may be.


All good points. I intend to make it clearer: https://codeberg.org/ezcrypt/ezcrypt/issues/4




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: