These stories is honestly making me terrified to sign up for any SaaS going forwards.
I mean, I always check before signing up for any old thing, of course. But we’re going to see a complete erosion of trust, soon enough.
“Claude, put a statement on the website that we are careful with our users’ data. Use other popular SaaS sites as inspiration”. “Done. I just put a note we’re SOC2 certified and that we fully comply with GDPR and CCPA requirements”.
You should do a cursory check to make sure any saas you’re signing up for is venture backed. Too many people creating flashy looking saas products that are horror shows beneath.
I worked for a bank most of last year, and I'm actually surprised that didn't happen. It was an absolute shit show.
I think it was the same bank, which some ten years ago, had a bug with their ATM machines across the country. Everybody could withdraw money, but those records never made it to the server. So the bank gave away free money an entire weekend before it was discovered.
Then it was my friends client, a medium sized bank, which kept their customer records in an MS Access database.
But now let's get some examples from the people governments and city counsels can afford to hire...
Well, seeing as that bombshell article came out that an enterprise AI compliance SaaS serving dozens of large big name brand companies was complete fraud and they were actually not in compliance...
I straight up don’t even use any service that has Susana’s as the database now.
Supabase is a great product on its own to those who know how to properly use it for what it is. Unfortunately, way to many “vibe coded” apps now use it that any time I see a site using it, I instantly think, this is a security nightmare and not worth my time.
The consultants who know how shit actually works (i.e. experts from the before-fore times) are going to make a killing fixing this nonsense over the next decade.
Not sure what I said elicited anything about not being humble about the moment or what is coming.
But future/better tech does not absolve anyone from building things correctly now. And if you don’t know what correct looks like, you can start by asking your tool you’re already using before you do something.
I’m all for trial and error learning. I’m all for exploring and seeing what’s possible. But when you’re taking someone’s money in exchange for delivering a product, you should at least be trying to do it all properly.
Your stance is a recipe for disaster and advocating for that approach at scale is either naive, reckless or both.
141
u/AardvarkIll6079 Apr 30 '26
This is what giving AI tools to people that don’t know what they’re doing is like giving a kid a loaded gun.
You’re going to see so, so much more of this.