Hacker News new | ask | show | jobs
by eridius 3937 days ago
That won't really fix anything, anyone who wants to MITM the HTTP can just kill the redirect.
1 comments

Not with HSTS enabled (which they do have). If you get caught before the first request ever, sure, but you've got bigger problems if that is the case.