Hacker News new | ask | show | jobs
by gervase 2514 days ago
> i've always wondered how companies get away with decrypting certain sites, i.e. Healthcare.

Often, through some kind of employee code of conduct; think along the lines of "I agree to refrain from using my work computer for personal business." or similar. Then, if something sensitive is decrypted, the employer has some legal cover.

1 comments

In my experience, those aren't decrypted. I see company generated certs for most https, but not banks and healthcare sites. I'm guessing there is some sort of whitelist.