Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
sebmellen
28 days ago
|
parent
|
context
|
favorite
| on:
Claude Cowork exfiltrates files
Pretty brilliant solution, never thought of that before.
blks
27 days ago
|
next
[–]
If we consider why this is even needed (people “vibe coding” and exposing their API keys), the word “brilliant” is not coming to mind
darkwater
27 days ago
|
parent
|
next
[–]
To be fair, people committed tokens into public (and private) repos when "transformers" just meant Optimus Prime or AC to DC.
j45
28 days ago
|
prev
[–]
Except is there a guarantee of the lag time from posting the GIST to the keys being revoked?
sk5t
28 days ago
|
parent
[–]
Is this a serious question? Whom do you imagine would offer such a guarantee?
Moreover, finding a more effective way to revoke a non-controlled key seems a tall order.
j45
27 days ago
|
root
|
parent
[–]
If there’s a delay between jets being posted and disabled they would still be usable no?
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: