Hacker News new | ask | show | jobs
by tripletao 2967 days ago
I think their goal is to still use https, but stop anything important from leaking if a sloppy server-side developer logs the full requests after TLS decryption (as Twitter did here).