1 In that even, only your _past_ pastes will be protected, of course, because the hacker could implant crooked javascript libs to get your future pastes. 2 No: It's not trivial to bruteforce because it's salted (each ZeroBin installation has its own random salt. You don't have to bruteforce the 32 bits IPv4 space, but a **536 bits** space. Good luck. 3 Search engines may stumble upon the URL of a paste, but they will not index the content of the paste itself, because they never execute javascript code. 4 If you don't trust me, **Wireshark the damn thing !**

