For the oauth login it requires the following permissions:
View basic information about your account, Manage your data in Google Reader, View your email address
Manage your contacts, View and manage your Google Contacts, Perform these operations when I'm not using the application
Why would it want access to view AND MANAGE my contacts? This seems a bit odd.
Memcache is designed to be run on a trusted network and only accessed by trusted clients. Therefore sharing a memcache daemon in its current state is not recommended at all.
Many sites also use memcache to cache page fragments that will be sent verbatim to clients with the rest of the webpage.
As Marco demonstrated in his slides one can easily inject into caches and if one can change the values of keys related to page fragments then it is a major security risk.
Since the Guidelines/FAQ has nothing on this specifically and it might be useful to one(Maybe more) HN readers I believe you should post a "We are hiring" thread.
Especially if no one gives any good reasons why not to in this thread.