Not sure why someone would sign up for a dating app that is this invasive
72 karma · joined June 8, 2022
Not sure why someone would sign up for a dating app that is this invasive
> Its driving my insane.
Off topic, but you made another typo here lol
Wasn't aware of this. Can you please link to some more similar job ads? Is this the standard in other militaries too?
Based on what I know there is a roster of eligible candidates with the required experience in most countries. One of them is promoted from there to fill in the vacancy. I've never seen an ad for a post like this before.
Not an expert but from what I understand a position of this level should ideally be filled internally by reassigning or promoting a officer that is already serving. These posts are really important and need someone with decades of experience in the navy. It is terrible if they cannot find someone internally.
It makes me wonder, what is it that ISRO does differently than most other government agencies in India that makes them so efficient.
Sorry I should probably have put the non-paywalled link in the submission
Yeah that makes sense, thanks for pointing that out. I'm just brainstorming at this point and will consult a security person before going to prod. Thanks for your pointers!
Option A 1. My user creates an secure (with API keys or some other method) API endpoint to provide the Client secrets when I need them.
2. When my app needs to access the client secrets, I maker an API call to the users endpoint to get the Client Secret.
Option B 1. 1. When user signs up, generate an encryption key and ask the user to save it securely. (With the warning that in case this key is lost, the user would have to configure the Client Secrets again)
2. Whenever the user makes an API call (over HTTPS ofc) that involves reading/writing sensitive data, require him to provide the encryption key as well.
Which one is better?
One option that I have been thinking is - 1. When user signs up, generate an encryption key and ask the user to save it securely. (With the warning that in case this key is lost, the user would have to configure the Client Secrets again) 2. Whenever the user makes an API call that involves reading/writing sensitive data, require him to provide the encryption key as well.
Here I won't store any encryption key on the server side and only the user will be able to decrypt the data.
Thank you so much for the reply! My application is a SaaS that helps developers add integrations (with apps like Slack, Linear etc.) to their apps really quick. The kind of sensitive data is Client Secrets and Access Tokens.
I get your point but my MacBook Pro's screen cracked a few years ago. This happened in India, they quoted $700 (around 55k rupees) for a Mac that cost $1100 (around 90k rupees)
Can you please explain this?