Readit News logoReadit News
unhappy_meaning commented on TeaOnHer, a rival Tea app for men, is leaking users' personal data   techcrunch.com/2025/08/06... · Posted by u/pavel_lishin
01HNNWZ0MV43FF · 14 days ago
> Is this just bad development? Are these just things could be missed by any developer or team?

As the saying goes, "Human error is not a root cause". A good Five Whys would eventually hit something:

Why did the DL pictures leak? Because the images were accessible via public URL. Why were they accessible that way? Because nobody on the team checked they were not. Why did nobody check?

Maybe not enough red team thinking was employed. It's easy to make an app and say "Look we have a sign-in screen, it's secure", but you need to think from the attacker's perspective and make sure every route to every piece of sensitive data is actually secure.

unhappy_meaning · 14 days ago
> ... you need to think from the attacker's perspective and make sure every route to every piece of sensitive data is actually secure.

This is almost "paralyzingly" scary but to not think about it at all is something I cannot fathom from the developers who made these apps.

Doing some more digging into these two "CEOs" of Tea and TeaOnHer. The TeaOnHer CEO is a Criminal Justice graduate from UMD with some comments about using claude.ai and the Tea CEO looks like he took a 6 month coding bootcamp at UC Berkeley. I don't want to dog on their background because I also don't have a CS degree but man...

unhappy_meaning commented on TeaOnHer, a rival Tea app for men, is leaking users' personal data   techcrunch.com/2025/08/06... · Posted by u/pavel_lishin
unhappy_meaning · 14 days ago
> Images of these driver’s licenses are publicly accessible web addresses, allowing anyone with the links to access them using their web browser.

> TechCrunch also identified a potential second security issue, in which an email address and plaintext password belonging to the app’s creator, Lampkin, was left exposed on the server

> While the app requests IDs and selfies from its users to verify their identities — a process that is not automatic — users can access a “guest” view of the app without signing in.

Is this just bad development? Are these just things could be missed by any developer or team?

I'm curious as someone who would like to create side projects with users (albiet not dubious ones these like apps) but I'm always afraid of a glaring security flaw that would be basic 101 of web development.

unhappy_meaning commented on I'm Peter Roberts, immigration attorney who does work for YC and startups. AMA    · Posted by u/proberts
unhappy_meaning · a month ago
Hello Mr. Roberts,

Thank you for doing this, as you know we've probably have seen some crazy news articles and segments of ICE agents arresting people all over the U.S. with some for good and some for wrong reasons. What is your advice or best practice for someone who is "wrongfully" approached by ICE agents but has legal status to be in the U.S.? (whether work visa or green card)

I've read that someone should carry their green card with them or if they have some sort of REAL ID mark on their drivers license it may help.

Thank you again for doing this!

unhappy_meaning commented on What “working” means in the era of AI apps   a16z.com/revenue-benchmar... · Posted by u/Brysonbw
9cb14c1ec0 · 3 months ago
Reminds me so much of the no-code bubble maybe 10 years ago, which also was full of big loud talk about shipping speed, product iteration, and developer obsolescence.
unhappy_meaning · 3 months ago
Slightly off topic but as someone who was in the "no-code" or "low-code" bubble some time ago as a "consultant", the sale tactics of these companies are slimy, cutthroat, and lots of fluff.

Client will go around saying they need an app or a thing and they reach a no-code company who promise they can deliver a working MVP at sprint 0 (~2 weeks). They charge a lot of $$$ and promises what would be construed at 24/7 support. If they get the contract, the "consultants" are worked to the bone in the beginning because managers need to hit their marks, make their C-suite happy, and ultimately try and keep the client as a long term paying customer.

This isn't anything out of the ordinary but I just had to rant that no-code is BS but it's still a flourishing market.

unhappy_meaning commented on The Rise of the Japanese Toilet   nytimes.com/2025/05/29/bu... · Posted by u/Kaibeezy
unhappy_meaning · 3 months ago
In almost all of SE Asia, especially Thailand, Vietnam, Malaysia, all of the toilets come with a hand-held sprayer. They also had this in the Doha airport and I'm not sure how common this style is outside of SE Asia but I'm guessing it's common. Japanese style bidets are very common in Korean households as well and I'm sure its easily a billion dollar business.

It is nice but the functionality is quite difficult for a person who's not used to this whatsoever. After you're done sh*ing, you grab the handheld sprayer and turn it upside down and reach behind you toward your butt and try as best as you can to aim it into your anus to wash as best as you can. People who have been doing this their whole lives can probably aim with a precision of a Marine Corp Sniper but to us, we look at it as alien technology. It's is quite difficult to use for a first timer and there are factors that worry us.

If its not aimed correctly, where does the splash go? If you're lucky it stays in the toilet boil. However if your aim is off, you can completely miss your anus and either shoot to much under or over which will shoot the water outside of the toilet bowl.

Also when I was using the bathroom in the Doha airport, the handheld sprayer had a soap dispenser next to it. I was curious what it was for so I YouTube'd and searched for instructions on what the soap dispenser was for and (kind-of) to my surprise it was soap to lather and clean your anus with your other free hand. After you lather and clean, you basically rinse your hand with the hose as well.

unhappy_meaning commented on I'm starting a social club to solve the male loneliness epidemic   wave3.social... · Posted by u/nswizzle31
msgodel · 3 months ago
Many of us are alone and not lonely and I think most men who feel "lonely" are lying to themselves about what socialization really is.
unhappy_meaning · 3 months ago
Yup, a lot of the men who are lonely are also a bit of an outcast whether it's self-imposed because of their warped sense of socialization or they're ostracized because they have weird takes on life issues or just life itself.

Dead Comment

unhappy_meaning commented on Someone at YouTube needs glasses   jayd.ml/2025/04/30/someon... · Posted by u/jaydenmilne
unhappy_meaning · 4 months ago
YouTube overall quality has been in a slow decline for the last several years and I'm sure it has to do with $$.

The UI is slower in almost all aspects, the grid mentioned here isn't even aligned properly. Playback buttons are slow to respond to hovers and clicks and the 1080p quality is no longer a "true" 1080p quality.

Don't even get me started with shorts because while the baseline functionality of it works, its pretty buggy for what it is. Maybe they are just too busy with scaling the entire thing that UI is an afterthought because the basic functionality is there and now its profits over quality.

unhappy_meaning commented on An interview question that will protect you from North Korean fake workers   theregister.com/2025/04/2... · Posted by u/dotcoma
ferguess_k · 4 months ago
They actually also interview for Chinese companies too. I have a friend who got a big shock when he saw someone wearing military uniform on Zoom. Apparently they didn't bother to hide the identities. My friend told me that the interviewee has very, very good skills (e.g. deep knowledge of X11) but he quickly declined him.

He dug a bit deeper and found out that the North Koreans have special programs for gifted kids. They send them to the schools for dedicated CS education. They also (presumably without proof) have access to the source code of various commercial closed source software.

It's a good pay job (comparing to other NKs) and they get to do what they love, so they are pretty loyal. But I always wonder, wouldn't they burn out eventually? Maybe they can switch fields or become teachers, though.

unhappy_meaning · 4 months ago
> wouldn't they burn out eventually?

They also might not have a choice depending on how much their skills are worth to the gov't... if North Korean.

unhappy_meaning commented on Supabase raises $200M Series D at $2B valuation   finance.yahoo.com/news/ex... · Posted by u/baristaGeek
unhappy_meaning · 4 months ago
And the decline of a good product begins because it will be all about profits for board members going forward...

u/unhappy_meaning

KarmaCake day78November 11, 2023View Original