Readit News logoReadit News
glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
dwisiswant0 · 2 years ago
Could you clarify the meaning of the term "Developers covered" as mentioned on the billing page?
glimow · 2 years ago
Sure, we count Developers who committed to the API repository in the last three months.

Hope that makes it more clear!

glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
lazyasciiart · 2 years ago
How does your product compare to Akita? https://www.akitasoftware.com/
glimow · 2 years ago
Sure, Escape and Akita are quite different: 1) Escape is primarily for Security Engineers, Akita is more for developers 2) Escape discovers API with external scans, Akita discovers API by observing live traffic 3) Escape is a proactive security tool that finds issues before production, Akita is a monitoring tool that detects errors in live traffic
glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
ichbinlegion · 2 years ago
> It will not attempt the riskiest attack scenarios

What does that mean exactly?

Do you manually assess what is risky for a particular API, or is it up to the system to choose?

If it's up to it, what happens if it thinks that's not risky to delete user data?

glimow · 2 years ago
We created specific safeguards for production mode; for instance, Escape doesn't launch any DELETE requests in prod mode.

You can also manually configure an allowlist/blocklist of operations for specific use cases.

glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
lazyasciiart · 2 years ago
What’s the reason this repo is archived? It looks useful. https://github.com/Escape-Technologies/py-multiauth
glimow · 2 years ago
Hey there, so py-multiauth is a great project that we love, but it didn't get enough attention from the community for us to afford to maintain it outside of our main codebase.

Since then, we have completely revamped it to create py-multiauth v2 that supports basically all form of authentication as you can see in the docs https://docs.escape.tech/authentication/

py-multiauth v2 is not open source for now, but our eng team might be ok to open source it if there is interest from the community

glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
fierro · 2 years ago
congrats! Really crisp idea, excited to try this out
glimow · 2 years ago
Thank you! Hope you will like it
glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
HorizonXP · 2 years ago
I think you guys are on the right track and this is a problem we are struggling with at my client.

I’ll test it out with them and see what they think. I will say that we were originally exploring Bright, but we had to rely on telling them what APIs and endpoints to hit, and they wanted to embed an engineer with us to help us onboard their product.

We wanted something simple that we could pay money for, have it discover all of our endpoints, pentest, and return a report.

1) please move pricing onto main site 2) please consider deploying on Azure Marketplace

The fact you’re including GraphQL is a big positive too.

glimow · 2 years ago
Thank you for the positive vibes.

We try to make our product as straightforward as possible. It’s a long journey for such technical topic but it gets better everyday.

And we listen to feedback. I’ll take a look at Azure Marketplace.

glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
nprateem · 2 years ago
I know you're writing for a technical audience and not investors, but if you can't grab my attention without a wall of text, sorry, tldr.
glimow · 2 years ago
The « Launch HN » posts, like this one, follow quite standard community guidelines that includes having a detailed description of how the product works to bring value to technical people from the HN community.

Of course, for investors, we would have written things differently, but we are not looking to raise money at the moment.

Hope that makes it more clear!

glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
FinnKuhn · 2 years ago
The amount of newly created accounts under this post praising this product reeks of botting...

edit: some of those comments have now disappeared. Make of that what you want.

glimow · 2 years ago
Hello, although we know HN's rules, some of our users don't. They just tried to help without telling us.

I guess we can be proud that they are our users and wanted to help. There was no intent to break HN's rules. We apologize for that happening, and we have told them about the rules so it doesn't happen again.

glimow commented on Launch HN: Escape (YC W23) – Discover and secure all your APIs    · Posted by u/glimow
motoxpro · 2 years ago
Seems amazing. Is this going to be an enterprise only product? Don't see a pricing page.
glimow · 2 years ago
Hello motoxpro, the pricing page is accessible inside the product during the free trial.

Although, by nature, the security market is mostly enterprise, we do have plans for startups and SMB as well. Happy to have your feedback on our pricing btw, always something hard to get right.

u/glimow

KarmaCake day120March 29, 2022View Original