What kind of security concern would there be with using JS to implement your wallet? Or building the wallet yourself as opposed to a solution with updates and whatnot?
The server-side wallet approach means that if their hot wallets gets hacked, all the funds will be gone.