Hacker News new | ask | show | jobs
by aiCeivi9 3020 days ago
They just assume that 3rd party shouldn't ever have a need to send "http://" link only to redirect to "https://" and are willing to stop that feature from working even if it can lead to false positives and just break some sites.