I think an unfriendly script can do a denial of service on jsbin by constantly creating a “save to public URL” script to clog the database. And, of course, anyone can publish a wow70 security exploit that infects people with old browsers and plugins; which can also get jsbin on google block list.
What about everything, though ... there are no user credentials to steal or illegal things to do with the accounts and privileges of people, because there are no accounts or privileges.
I should probably be more careful which links I click.
Yes, that seems reasonable.
source share