Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This might be the nice thing to do, but anything that points back to him being the source of the complaint may not be best for him in the long run.


Why not? If the competitor decides not to take his advice, and he then reports him for violating PCI, he can say, "Hey look, i reached out via email to him and tried to help, he blew me off/didn't fix anything, so I then took steps to protect his customers, since he wasn't."


It's about retaliation and legal issues. The guy could easily retaliate with a smear campaign or even take legal action saying he was "hacking" or doing "espionage".

Whistleblowing often has negative consequences for the whistleblower.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: