Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Now I wonder whether “retrieving” your own OAuth token from an app to make REST calls that extract your own data from cloud services is legal. It seems to fall under the same guideline, that exceeding authorization is not unauthorized access, so even though it's usually against the terms of service it doesn't violate CFAA?


Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: