Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> I've never seen a company whose developers didn't commit live credentials into their source code.

I don’t do that, but I’m pretty pathological about stuff like that.

I learned it from the company I used to work for, who were paranoid to the point of lunacy, about Chinese hackers (they were breached once, and took the lesson to extremes).

I don’t think they are an outlier. I’ll bet lots of companies are just as tinfoil.

It’s a downright unbearable development environment, though.

I’ve heard banks can be even worse.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: