|
|
|
|
|
by marijn
4605 days ago
|
|
This is a tempting approach, but man-in-the-middle attacks, or the equivalent compromised or legally-strongarmed servers are the whole problem here. Any client-side logic that is served by a server can only be trusted as far as that server (and your communication channel to it), which means that in this case it's almost useless. There doesn't seem to be any serious alternatives to thick, open-source, locally installed clients. As a web affectionado and JavaScript nerd, this pains me too, but we'll have to get used to it. |
|