Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You don't have to trust a single developer if you pay multiple independent reviewers though. If you paid a bonus for finding problems you could even incentivize their honesty.


Note that if the bonus is less than what the reviewers would gain from using the exploit, then they are not fully incentivised to be honest.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: