This absolutely IS a reason to distrust a website claiming to be owned by a bank (or any other institution working with such sensitive assets). To be precise, such a website absolutely needs to have a certificate granted not only on the basis of "yes, I control the machine this domain points to" (which is what Let's Encrypt does), but also based on other, more physical and reliable means.
mnw21cam|7 months ago
I personally would trust something signed by Lets Encrypt more readily than many other certificate providers. They appear to know what they are doing.
[0] https://www.troyhunt.com/extended-validation-certificates-ar...
lxgr|7 months ago
In other words, if the bank is following best security practices, they're fine with Letsencrypt; if they don't, they might need somebody else.
jonathantf2|7 months ago
unknown|7 months ago
[deleted]