Out of curiousity, I like security just as much as the next guy and ensure that certs are valid, ciphers are fresh, and protocols are mature, but I am also not really concerned with an informational site that runs http being browsed. Would you mind sharing what your concern would be with browsing this content over http?
Not quite. The Wikipedia page is worth a look through if you don’t want to click on an http page. https://en.wikipedia.org/wiki/Bitter_lesson
Out of curiousity, I like security just as much as the next guy and ensure that certs are valid, ciphers are fresh, and protocols are mature, but I am also not really concerned with an informational site that runs http being browsed. Would you mind sharing what your concern would be with browsing this content over http?
MITM injection by your ISP or government
Use uBlock Origin and add custom filters to block scripts on http:// ; e.g.
Inject what exactly? Why should I trust incompleteideas.net more than my ISP or government?
Take your pick:
https://web.archive.org/web/20190401161916/http://www.incomp...
or
https://web.archive.org/web/20260727174324/http://www.incomp...
You could read it through internet archive if it's this important.
https://archive.ph/DQU4a
the page is nearly just a .txt file.
the reason for https is MITM injection, regardless of original content
ah, didn't know that. thanks!
1 reply →
So what? Are you worried someone replaces the txt with a different txt?
2 replies →
extremely HN comment