Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

We‘re doing something way less critical at my job. But we have two pentests per year by external companies. How on earth is this level of incompetence even legal.


Because software engineering is not taken seriously as engineering. What liability is there, for example?


I don't think it was. Apparently they faked their SOC2 as well


It's not




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: