Hacker News new | past | comments | ask | show | jobs | submit login

Looks like pointless complaints to me. You're losing confidence in CC because their process for reporting security issues is okay, but not perfect?

They did the hard thing, which was emailing users about a "breach" that may or may not have been exploited. I mean we're only talking about names/emails here but whatever.

I donated to CC a couple times and may be in that file but frankly I couldn't care any less, as long as CC does an outstanding job improving their licenses (which they do!).




OP says that CC didn't reply. At all.

If true, I think it's totally reasonable to complain about that.

You donate to an organization because you want to support them. You responsibly report a data breach because you want to support them. And in response? They can't be bothered to take 10 seconds to type "Thank you! We'll fix this ASAP." Really?

My advice to OP: Next time you're fortunate enough to be able to donate to an organization, pick another one. It's not just about supporting good causes, it's about supporting effective organizations.


Something like 'enlightened self-interest'. I like the term "effective organizations". There's little point it supporting any other kind, except perhaps for external effects - praise, reflected esteem - which is more PR than a will to benefit the public.

Now I have a way to distinguish public organizations wanting my money. And since I donate anonymously, I have no need to ever donate to the PR kind.




Guidelines | FAQ | Support | API | Security | Lists | Bookmarklet | Legal | Apply to YC | Contact

Search: