Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

This sounds like a mistake? When/why should the application validate the format of a UUID?


When our services get Strings in requests that are UUIDs we convert them to typed java.util.Uuid objects, if they're not valid they get rejected.


Why shouldn't they?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: