Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Closed source is an ironclad guarantee that the source cannot be audited independently.


And yet companies hire out security audits on a regular basis, frequently as a part of their contracts.

Even Windows has source available, if you pay for the pleasure.


How much more secure does a theoretical audit that never actually happens make you?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: