top | item 17093713

(no title)

andyjh | 7 years ago

Actually the target position is that https _won't_ be marked as "secure", but rather than http will be marked as "not secure". Can't really argue with that.

discuss

order

peterwwillis|7 years ago

Oh I'm not arguing with that part, that's a good development. But that's "assume the web is just the web", not "assume the web is secure by default". The latter is a dangerous idea.