It's more like:
1 - OpenSource?
No: Scam/Vírus/Trojan. I will never download it.
Yes: Let me check the code and I will tell you.
2 - Got reputation on the forum?
No: Nobody will use your service.
Yes: Let's wait for feedback from someone respectable
3 - How do you save user's passwords? No salt? No HTTPS?! Are you kidding?!
(.....)
People interested in bitcoins are in general computer geeks with a great interest in security. Now tell me, what happens if you take a bunch of security experts and make them run sites to sell stuff to each other?
Perhaps the best way to phrase it is that it's 1994 ... and you're opening an eCommerce store... I don't know how many of you guys were around during the 1990's dot com boom times... and the early 2000's crash times.. but honestly there were some things that people tend to forget.
At one point Ebay banned Paypal.
literally a business decision was made to lock paypal out of Ebay, ebay looked at paypal and realized that at the current growth rate of paypal ebay would not be able to fuction without it. So they banned it hoping someone else would show up. they citied security concerns and that "some company is stealling usernames and passwords' literally that is what they used as an excuse.
eventually within a few weeks ebay unbanned paypal then subsequently bought them realizing that they couldn't grow without it.
The point is that yes a security concern is a MAJOR issue, but at the same time, there's a bunch of reading between the lines going on. Because from time to time I get these crazy "suggestions" and in reality I find out the guy works for "bitcoin startup A or bitcoin startup B" those suggestions may on the face look good.. but in reality aren't.
Example, I got a PM that stated I needed to make the minimum password length 20 characters for 'security reasons' ... now I am all for allowing 20 characters.. but minimum length 20?
I find out the suggestion came from a guy that worked at one the exchanges that is now considering an ewallet ... hence my suspicion that perhaps it wasn't so sincere.
20 character minimums would lock grandma out of every using the system.