Hacker News new | past | comments | ask | show | jobs | submit login

The application has a much larger attack surface than the auth/user system, so it makes sense to store PII separately.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: