Follow

okay, i'm curious

what do yall think of the current Mass HTTPS-ization of all websites?

@sc It's concentrating a huge amount of power into the hands of a few certifiate issuerers just as Google started using Chrome to label anything without one as "insecure" and I deeply distrust that.

@Zero_Democracy yeah big same, to be honest. if https was more controlled and if it wasnt controlled by bad CAs and if it wasnt easily exploitable (e.g. had a verification system) then i'd be on board but alas

reminds me of Valve's 'hands-off' situation for Steam QA rn tbh

@sc
It's inevitable.

The HTTP protocol using plain-text allows massive surveillance. With free certificates from Let's Encrypt, there isn't any reason to use it any more.

You wouldn't think of snail-mailing your personal details without an envelope. Why would you do it on the internet.

Sign in to participate in the conversation
Awoo Space

Awoo.space is a Mastodon instance where members can rely on a team of moderators to help resolve conflict, and limits federation with other instances using a specific access list to minimize abuse.

While mature content is allowed here, we strongly believe in being able to choose to engage with content on your own terms, so please make sure to put mature and potentially sensitive content behind the CW feature with enough description that people know what it's about.

Before signing up, please read our community guidelines. While it's a very broad swath of topics it covers, please do your best! We believe that as long as you're putting forth genuine effort to limit harm you might cause – even if you haven't read the document – you'll be okay!