Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> very few companies will pay for their source code to be audited, because it's expensive and time-consuming, and most only do it if they're required to.

And even when they do, in my experience, they usually end up buying an expensive automated report that provides little or no real insight.



> they usually end up buying an expensive automated report that provides little or no real insight.

That's totally what we are in the process of doing (with even two separated tools for even more wasted time!)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: