|
|
|
|
|
by jimktrains2
4535 days ago
|
|
I wasn't saying HSTS is useless, just pointing out one of the issues with it. I think HSTS a great thing! With XFO, doing something like adding 'reddit.com/' before the domain to see if it's been submitted becomes much more computationally intensive on reddit's side if they can't just put it in a frame. This is where I run into issues mostly, with tools such as that. That said, there are other things it could do (take me to a submit page or a discussion page instead of framing the page). And frames suck anyway, so there is that. I can see the usefulness in CSP, I just feel like it's a band-aid on larger problems. |
|
I am rather curious where did you get this claim? Any stories I should check?
And also what's the larger problem? Again, I'd really love to hear you elaborate on your thoughts.. thanks.