Hacker News new | ask | show | jobs
by robryk 3538 days ago
It baffles me why do all browsers pretend that https with an untrusted certificate is worse than plain http.
1 comments

I think because with plain http there should be no illusion of security.
Do you mean "we expect people not to have an illusion of security" or "we would want people not to have an illusion of security"?

I posit that this actually creates an illusion that http is better than "insecure" https.