←back to thread

742 points janpio | 2 comments | | HN request time: 0.507s | source
Show context
arccy ◴[] No.45676475[source]
If you're going to host user content on subdomains, then you should probably have your site on the Public Suffix List https://publicsuffix.org/list/ . That should eventually make its way into various services so they know that a tainted subdomain doesn't taint the entire site....
replies(15): >>45676781 #>>45676818 #>>45677023 #>>45677080 #>>45677130 #>>45677226 #>>45677274 #>>45677297 #>>45677341 #>>45677379 #>>45677725 #>>45677758 #>>45678975 #>>45679154 #>>45679258 #
1. r_lee ◴[] No.45677023[source]
Does Google use this for Safe Browsing though?
replies(1): >>45677036 #
2. akerl_ ◴[] No.45677036[source]
Looks like it? https://developers.google.com/safe-browsing/reference/URLs.a...