Hacker News new | ask | show | jobs
by EthanHeilman 5169 days ago
If the page is not HTTPS an attacker could inject html to redirect your data a site which is not stripe (say the attackers fake stripe). HTTP stripe forms are not secure.