Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Here's my black pill: Node in general is not safe.

The blurring of the client-server lines is a security risk. Very easy to expose the wrong thing; the language appeals to people who know 1 language (which correlates with lack of experience).

In my personal experience node projects developed under my supervision had very basic client-server boundary vulns 66.67% of the time. Empirically it's not great.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: