5 ms·
Likely next step: mark only pages that are present in Chrome's preloaded HSTS lists as secure (including their new premium .app domain).
by RyanZAG 8y ago
Likely next step: mark only pages that are present in Chrome's preloaded HSTS lists as secure (including their new premium .app domain).
- superflyguy 8y agoMost people don't use very many sites. We do, yes, but the most will revisit the same sites over and over. And they'll be entering their personal/card details into fewer. Why not have a browser popup each time you enter this info into a site for the first time? And a warning if the site is not on a browser supported whitelist? Don't "phone home" with people's sites; browsers could maintain white/black lists. Making users see if they think the site they're on is dodgy is like expecting people to only download code in source form and check it before compiling it. If my mum uses the same 4 shopping sites and one bank it shouldn't let her log into another one - fake or not - without at the very least a "wtf are you doing" warning.
- icebraining 8y agoWhat's "premium" about .app?