Show HN: Snip.ly, the link shortener that drives conversion
snip.ly
snip.ly
I'm not seeing how encouraging end users to engage in behavior that sites specifically turn off for security reasons as a 'good idea' regardless of the marketing value..?
I fully expect the end users of this product to be oblivious to technical minutiae like clickjacking. I was just expecting a stronger reaction to the technical detail this relies on a tech-heavy start up site like Hacker News.
The message is not showing up for no reason. You clicked a link from someone you follow, because you wanted to usually BECAUSE of how that content relates to them.
Sure, if you just change every link you send out to a link with an ad at the bottom that is bad. But I see no problem with adding context and commentary to a link someone is sharing on social media for that exact reason.
Maybe I'm just overly paranoid?
If such actions are not legally ruled out, this service may invite them.
The former, possibly depending on the ToS of the site and how creative your lawyers can be. The latter, probably not; see 17 U.S. Code § 512, aka Safe Harbor for online posts.
You can essentially advertise
on any website for free!
--Lucille Danks ― DeloitteAlready thinking of a ton of ways this can be used. Don't love that you have to sign-up for this but I suppose it is necessary.
But I might be missing the full picture, and perhaps I'm just not the target audience.
Good luck to Snip.ly, but for developers who would want to stop this kind of thing from happening on their own sites, OWASP has a clickjacking defense cheat sheet:
https://www.owasp.org/index.php/Clickjacking_Defense_Cheat_S...
Is it really free to use?