god 9 pages of bumps good luck merry christmas and happy new year
Run Your Own USPS Label Service - Generate XXX,XXX a Year
#145
Posted 23 August 2023 - 04:41 AM
This is a website that links to his personal api where he charged $1.50 a label. There are better options out there, do not fall for this rip off.
#146
Posted 23 August 2023 - 03:47 PM
Devouch. User sells a vulnerable website to anyone who purchases — and refuses to update the application or take any remote amount of fault for it and blames it on the user saying that “they should hire a security professional”.
This is a website that links to his personal api where he charged $1.50 a label. There are better options out there, do not fall for this rip off.
Let's first start off with I do not know who you are. I never done business directly with you. However, I do know what domain you came from by your comment. Because the person I did business with does not speak like you and this is a completely different username. You're just his staff member, friend or whoever you are to him. But you have never paid me directly nor have I ever sent you any files or gave you any access directly either. But you're attempting to speak on the behalf of someone else.
There's not a single website created that is unhackable. The fact that you think your website should be built like Fort Knox is laughable. There are billion dollar companies whose servers have been HACKED. Why wouldn't a $3,000 be easier job than that? We never made an agreement that I would do consistent updates to any website. You were warned several months ago to hire a security developer. You agreed and said you brought someone in. Then you return asking me for assistance. I am not your lifetime developer unless you hire me to be your lifetime developer. What happen is you ignored my advice several months ago to hire a security developer.
My advice to you has always been solid. This thread is for reselling shipping labels. Did that aspect work for you? Yes. As there's 0 issues with the API as you know for yourself. There's an addon of if you need a website created I can make one. Did I make one fast for you? Yes. Were you forced to buy a website from me? No. Could you have moved off the website to a Discord and Telegram channel for better security? Yes. Could you still use my API and hire someone to make new website for you? Yes. Will I be upset and prevent you from using my API because you're posting some silly negative grievances that really doesn't address the service I am offering....NO I will not be upset and prevent you from still using my service because I am running a business at the end of the day.
Your spending too much time complaining and wondering if another security breach will happen vs. being proactive and hiring a security developer to help you with the issue. It was avoidable. You chose not to avoid it and roll the dice. Your the only person who has had any security issues. That doesn't mean the code for your project is the most tight knit backend. What it means is simple...your the only person who has had an incident and it's due to you pissing off a competitor and your poor marketing that's drawing negative attention. You had a VERY small website, yet you somehow brought in negative attention to your website immediately.
But lets speak about what I did for you while you're trying to damage my reputation publicly vs. being a man and speaking to me directly on Discord like a true professional would do and not some immature kid whose way over their head. I charge $3,000 for a website built. You wanted to pay me $500 and then $2,500 in profits to do the website for you. How much did you send me? The answer is $500. Did you ever send the remaining $2,500? No, you did not. Did I pester you and harass you for the remaining $2,500? No. Did I come on this thread to publicly bash you because you did not finish paying me? No.
You would've been better off coming on this thread and saying that my API is legit, and produces shipping labels and it hasn't given me any issues. However, I bought a website from him and it was exploited by some customers. Simple as that. Trying to be wordy more than that is a reach and a bad attempt at trying to hurt me considering I HELPED YOU by accepting $500 for the website and never collecting the remaining $2,500.
I will not respond back to you on this thread. Speak to me in private which is what you should've done in the first place. Right now the only thing you should be focusing on is FIXING THE SECURITY ISSUE or moving to Discord/Telegram channel only. Continuing to complain about your breach doesn't solve anything...it's a waste of time.
#147
Posted 23 August 2023 - 07:15 PM
1. “ But you have never paid me directly nor have I ever sent you any files or gave you any access directly either. But you're attempting to speak on the behalf of someone else.”
I’ve looked at the janky ass PHP you have sent already. It’s all horrible and requires a complete redo from top to bottom. The fact you’re SELLING IT as you ADVERTISE IN YOUR THREAD is fucking inexcusable and it’s not even worth $500.
2. “ There's not a single website created that is unhackable. The fact that you think your website should be built like Fort Knox is laughable.”
Who said it needs to be unhackable? No one. But you sent in a webapp where you can open burp suite up, send an api request and get free labels in less than a minute. You’ve not implemented the bare minimum of security in this website you’re selling and ADVERTISING ON THE THREAD. Have to reiterate that for your retarded brain.
3. “ We never made an agreement that I would do consistent updates to any website. You were warned several months ago to hire a security developer.” Nothing wrong with hiring a security developer. Except the fact he’d have to recode your entire shitty janky vulnerable web app. Pretty expensive.
4. “ You’re the only person who has had any security issues.”
Please send me your other customers websites then, I’d love some free labels.
5. “ I will not respond back to you on this thread. Speak to me in private which is what you should've done in the first place.”
Already did. You refused to respond to me after I questioned you directly on why you sell inherently and EASILY vulnerable code.
Users browsing this thread: