Hacker News new | ask | show | jobs
by pan69 4379 days ago
HTTPS is only secure if no client credentials are stored on the client, e.g. hard coding a username/password pair in a mobile app. If a user needs to supply a username and password it would be OK I guess..