# Gavin Andresen # 2011-04-19 02:40:40 # https://bitcointalk.org/index.php?topic=6076.msg89362#msg89362 @s{quotedtext} @s{quotedtext} @p{brk} Yup, although I'd like more brains to think it through@p{--} are there any potential denial-of-service attacks if bitcoin is listening for RPC commands by default (note that JavaScript in your web browser CAN access @s{(link)}, the same-origin-policy for JavaScript doesn't apply to localhost URLs)? @p{par} Does it open up any extra security holes if you're on a multi-user system? @p{par} And I don't think it should go into mainline bitcoin until there is a compelling need for it@p{--} and I don't think there will be a need until the 'click on a link, popup payment dialog from bitcoin' functionality is worked out... @p{brk}