Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Browsers already complain if a site mixes http and https, why can't they complain if security levels are mixed at all (plaintext, self-signed, normal-CA-signed, EV, TACK-pinned)?


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: