Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

They should make it more clear that it's a concept.

I could see a real version that sends the inputs to the backend where some analysis is done, but right now an adversary can just run the onVerify callback as "bypass".

 help



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: