Hacker News new | ask | show | jobs
by li_am 2744 days ago
I thought so too - though I note that the request included 'HTTP/1.1', which I presume means this is solely non-encrypted traffic? Can anyone clarify?
1 comments

I would hope that requests to "POST /store/checkout" are encrypted. Cloudflare is a MITM so they can of course see this (and the associated personal / payment data...) regardless of encryption.