okay, i'm curious
what do yall think of the current Mass HTTPS-ization of all websites?
@Zero_Democracy yeah big same, to be honest. if https was more controlled and if it wasnt controlled by bad CAs and if it wasnt easily exploitable (e.g. had a verification system) then i'd be on board but alas
reminds me of Valve's 'hands-off' situation for Steam QA rn tbh
@sc
It's inevitable.
The HTTP protocol using plain-text allows massive surveillance. With free certificates from Let's Encrypt, there isn't any reason to use it any more.
You wouldn't think of snail-mailing your personal details without an envelope. Why would you do it on the internet.
@sc It's concentrating a huge amount of power into the hands of a few certifiate issuerers just as Google started using Chrome to label anything without one as "insecure" and I deeply distrust that.