Hacker News new | ask | show | jobs
by jwfxpr 2847 days ago
If the page that links to the login page hasn't proven it's secure, I shouldn't trust the links, and therefore shouldn't trust the destination. Hence why static landing pages need HTTPS just as much as login pages.
1 comments

Fair enough, although you could check that the domain names are the same in this case.