Hacker News new | past | comments | ask | show | jobs | submit login

PSA: You should wait to donate as your credit card information will be relayed unencrypted over HTTP on their donation page (http://mayone.us/fec_compliance/).

I'm hoping they'll fix this soon.

EDIT: They've added SSL, so go ahead and pledge!




They added SSL but it appears they are still making some kind of mistake. They claim to be using stripe.js (edit: http://mayone.us/distribution-plan/) which, as far as i know, creates a token so you don't have to send the credit card information over to your server protecting you from liability. It seems like they have still implemented it incorrectly. If you click "Pledge" it still sends the raw (albeit now encrypted) information to their wordpress server.




Consider applying for YC's W25 batch! Applications are open till Nov 12.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: