Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Great you decided to share the source code, but then I was able to see that you let the admin session enabled. you can disable that on production

https://stackoverflow.com/questions/4845239/how-can-i-disabl...



Thanks! I will implement this once the traffic from HackerNews decreases a bit (server is getting totally hammered).

Still there's no admin user configured so it's safe




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: