Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I think you have it right. The signed URLs are a way to giving people an address to the files from our API, then they have call it again to key the keys. I suspect if once we put the files behind a CDN with signed keys, we’ll have even more security here.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: