Hey Radu, thanks for your message.
1. In fact they are, but that's true they are not in a separate table but nested into a whole JSON data. We need to study the impact on that
2. Well the URLs field was more designed to link studies/analysis links (safe links). Having malware links in this area would be very unsafe for the user.
3. Yes, this is already planned. We would like to design a "similar samples" section
4. Good idea, thanks.
5. We need to evaluate the impact, but yes maybe we could have an option in user settings to override the keys. The general idea behind MRF upload is that ownership is not a strong concept, once the sample is uploaded the user isn't really high profile anymore. The cron is used to run jobs on behalf of the whole team/company, by using company wide credentials that are usually stronger.
The user key setting was designed originally because of the VirusTotal comments, so that when someone is commenting it's not the company key that is used.