Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What bothers me about Postman is how they took ownership of the popular httpbin project 5 years ago and left it to bitrot. They haven't made a single commit since then, not even dependency upgrades. Now it has acquired 5 years' worth of CVEs in its dependency chain. They receive PRs to fix those issues, but all PRs and issues are ignored.

Why take ownership of the project if when there's no intention of maintaining it from the very beginning? It's almost as if projects like httpbin are detrimental to their business.

https://github.com/postmanlabs/httpbin



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: