If Instant is compromised, then that's a lot more dangerous. We minimize this risk following security best practices: keeping data encrypted at rest, keeping secrets hashed at creation time, etc.
If Instant is compromised, then that's a lot more dangerous. We minimize this risk following security best practices: keeping data encrypted at rest, keeping secrets hashed at creation time, etc.
Also no motion of data encrypted during transit.
Would not use this for anything other than toy projects.
/s
If you want more details, read their open source codebase or ask them specifically what documentation would boost your confidence, instead of leaving snarky comments.
Also, for people who actually care about security in the cloud, physically separated is not uncommon. Side channel attacks are real. Dedicated instances are not that hard if you really care about security.
> If someone else's account is compromised, how do I know I won't be?
If you have other questions, you can feel free to ask, and I'd be happy to answer in more detail.
These are fundamental points to be open and transparent about to instill confidence