Take a look at example 2.11 in the YAML spec [2], for example, and see if you can make heads or tails of it.
[1]: https://pairlist6.pair.net/pipermail/markdown-discuss/2011-A...
(and pyYAML itself can't always parse its own output correctly...)
At least perl doesn't support this, so it's inherently insecure there, but you can always use YAML::Syck which didn't go this way.
"YAML expresses structure through whitespace. Significant whitespace is a common source of mistakes that we shouldn't have to deal with."
I can think of ONE time when that causes a problem, and that's with indentation with multi-line strings. Oh look, HJSON included that feature. That's like throwing the baby out and keeping all the bathwater.
Although admittedly I haven't had to work with YAML a lot but I have liked it when i've touched it.
There are a number of others given the length of the spec. Yaml is a complicated beast that generally has more than one way to do any given thing