Hacker News new | past | comments | ask | show | jobs | submit login

Operationally, the CEO should probably not have write access to a master DB.



the CEO is one of the original developers as I understand it, which is probably why he has access to it. but you are right, he should not have it


So since the founding of Reddit in 2005 and now—we're expected to believe that Reddit hasn't hired a single security expert, engineer or otherwise which has rightfully removed any unnecessary access to user data? This seems incredible to me.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: