logoalt Hacker News

mnottoday at 11:37 AM1 replyview on HN

HTTP only is fundamentally disrespectful to your users. It places your needs above theirs. It assumes that your threat model is the same as theirs. There is no excuse for it in 2026.


Replies

0x000xca0xfetoday at 12:11 PM

HTTP is still the best solution for intranet sites... as long as you cannot run your own fully local CA as hassle-free as DHCP, HTTP will never die.

show 1 reply