Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

The “read only” nature of PDFs is a feature, not a bug. The idea being that once you distribute the PDF, it can’t be changed, and thus has more “truth” than something editable would. Even now PDF is considered an acceptable format for legal documents where Word docx is not. Of course this is completely false safety given that many programs can edit PDFs.


> Of course this is completely false safety given that many programs can edit PDFs.

Well, unless you sign the PDF. Even more, you can sign each edit separately, so you can do things like add content and signatures and still verify who added what. Meaning: one party can create PDF with forms, sign it, then the party filling out the form can sign their own changes for authentication.

And let's not forget the fact that PDF renders correctly on pretty much any machine you put it on - this is incredibly important.


> Of course this is completely false safety given that many programs can edit PDFs.

But can you edit a properly signed[1] PDF without breaking it? From an integrity perspective, that's what matters; otherwise, it's just inherently more portable until non-repudiation becomes relevant.

[1] As in not SHA-1: https://shattered.io/


Including Word nowadays!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: