• jagged_circle@feddit.nl
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      4 days ago

      Yes. If customer support doesn’t understand that there is a vulnerability on the website, then I would definitely want to know about it

      I’ve emailed CISOs directly this way, who have thanked me.

      • onlinepersona@programming.dev
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        3 days ago

        That case makes sense does make sense. I’m concerned about abuse however. Imagine if you worked for a game company as a dev, put your profile on the fediverse and angry idiots started sending you complaints, spam, or worse. That would drive people away.

        On LinkedIn there’s some semblance of professionalism in messages (yes I know of the crazies on LinkedIn). Making profiles publicly available to multiple servers will require proper guardrails to prevent abuse and spam.

        Anti Commercial-AI license