Live data from Hacker News

Notion leaks email addresses of all editors of any public page

twitter.com

61–70 of 162 posts

Re: Notion leaks email addresses of all editors of any public page

#61

Recently I checked back on Notion after a year or so of not seeing it. I was going to recommend it to someone as an example of hypertext, but I see now it calls itself an "AI workplace that works for you" and "Your AI everything app". This company means nothing now, seriously what happened.

They’ve basically positioned themselves as a workplace app for years now. A fully integrated project management and documentation really is just asking for AI to be part of it

I think it does all of this really well... Especially as someone coming from the dystopia of permissions management that is Atlassian, I really like notion.

Re: Notion leaks email addresses of all editors of any public page

#62

Recently I checked back on Notion after a year or so of not seeing it. I was going to recommend it to someone as an example of hypertext, but I see now it calls itself an "AI workplace that works for you" and "Your AI everything app". This company means nothing now, seriously what happened.

What do you mean “now”?

It never meant anything. Motion has always tried to be everything, do everything and work for absolutely everyone and that has always meant it was just a jumbled mess of pure waste of computing cycles. Notion has always been a disgrace of an app and a service—shoving AI into it is just the natural next step for a “whatever” company such as this.

Re: Notion leaks email addresses of all editors of any public page

#63

Earlier quoted context omitted.

Rejecting the government is insurrection, it's the same as becoming a terrorist.

A terrorist works with terror (fear). Also at least in democracies you can reject the government without physical violence.

> A terrorist works with terror (fear).

Extreme, yet I can't deny its effectiveness. How do you radicalize a decadent, apathetic population? People who literally do not give a shit about important issues because they have too much to lose, because they'd have to give up their comfortable lifestyles? Terrorists attack them directly, breaking the illusion that their almighty governments can protect them. They gave up all those freedoms, paid all those taxes, sacrificed their principles, all in the name of security... Only to discover they aren't safe at all. Quite ironic, really. No wonder governments worldwide are willing to pull out all the stops against terrorists.

> Also at least in democracies you can reject the government without physical violence.

Doubt. To me it seems democracies exist just to give people the illusion of choice, not to give them any real power. The reality is people are manipulated by the mass media, their very wants and desires are shaped by it. Censorship is growing world wide, even in "democratic" governments, because they want to reserve the right to shape the population's collective mind. And when even that fails, it turns out every politician answers to the corporations anyway. They literally buy laws via lobbyists. If by some miracle some law gets passed to benefit people at the expense of corporations, the lobbyists swoop in and neuter it with hidden loopholes and fine print.

Re: Notion leaks email addresses of all editors of any public page

#65

Very timely. I literally ran a Claude prompt "compare and contrast Notion vs Obsidian" and flipped over to HN while it was thinking, and this comes up. Thanks HN!

For a personal knowledge base? I would stay far away from anything proprietary for personal notes. I love logseq though I'm increasingly worried it's abandonware

Logseq isn't abandonware - they're in the process of rebuilding the app from the ground up to be database-driven, rather than house-brand Markdown as the source of truth and a database constructed from the files afterwards.

I'm not saying it's the most likely project to survive, but they've been working in quiet mode for a good while now.

Re: Notion leaks email addresses of all editors of any public page

#66

Notion’s macOS app is some of the worst software I’ve ever used. If there is a platform design idiom, they likely break it without a second thought.

Webwrapper apps should die a quick painful death and those involved in deciding that a given app should be a webwrapper should stub their toes on furniture corners every 30 minutes of their lives.

These apps are a disease and no one should be using services that offer them.

Re: Notion leaks email addresses of all editors of any public page

#67
post #26

Earlier quoted context omitted.

That's just ... absurd. The flaw itself is absurd but then just accepting it as "by design" makes it even worse.

It's also trivially easy to fix. 1 min delete and deploy.

I'm guessing it's not trivial to fix without breaking other things? The weakness seems to be that anyone can turn UUIDs into details like email. But I assume this functionality is necessary for other flows so they can't just turn off all UUID->email/profile look ups. And similarly hiding author UUIDs on posts also isn't trivial.

Conceptually, I agree it should be easy, but I suspect they're stuck with legacy code and behaviors that rely on the current system. Not breaking anything else while fixing this is likely the time consuming part.

Re: Notion leaks email addresses of all editors of any public page

#68

Earlier quoted context omitted.

For a personal knowledge base? I would stay far away from anything proprietary for personal notes. I love logseq though I'm increasingly worried it's abandonware

You don't lose anything from the proprietary nature of Obsidian because it's just markdown files all the way down.

Yeah to clarify, I mean Notion was proprietary. Obsidian I would call borderline because as you mentioned, the markdown file storage format.

Re: Notion leaks email addresses of all editors of any public page

#69
post #67

Earlier quoted context omitted.

It's also trivially easy to fix. 1 min delete and deploy.

I'm guessing it's not trivial to fix without breaking other things? The weakness seems to be that anyone can turn UUIDs into details like email. But I assume this functionality is necessary for other flows so they can't just turn off all UUID->email/profile look ups. And similarly hiding author UUIDs on posts also isn't trivial. Conceptually, I agree it should be easy, but I suspect they're stuck with legacy code and…

Of course they can fix it, come on.

They can easily withold information they put out intenionally.

Post reply on HN