4 ms·
Would add HTTPS Everywhere https://www.eff.org/https-everywhere https://www.eff.org/https-everywhere and NoScript https://noscript.net/ https://noscript.net/ to
by 5986043handy 6y ago
Would add HTTPS Everywhere https://www.eff.org/https-everywhere https://www.eff.org/https-everywhere and NoScript https://noscript.net/ https://noscript.net/ to that list
- motorbreath 6y agoThese are essential- I also add Privacy Badger and uBlock Origin. I choose Firefox over Chrome.
- Maximus9000 6y agoIf you have the latest chrome/firefox, doesn't that default to https all the time? Thus making "HTTPS Everywhere" redundant?
- Shared404 6y agoHTTPS Everywhere will block a site if it does not have HTTPS available iirc. Chrome/Firefox don't do that by default.
- Markoff 6y agoyou can disable scripts even with ublock, so I don't understand why people still keep noscript
- ffpip 6y agoI just use uMatrix. Much easier to manage scripts, cookies and XHRs
- mehrdadn 6y agoDoes HTTPS Everywhere actually work for you? It's utterly useless for me as far as I can tell. Try going to some site (say, example.net) in Chrome and watch it just load HTTP.
- makeworld 6y agoHTTPS Everywhere only loads HTTPS on a predefined list of sites. I just use SmartHTTPS on Firefox now.
- notpiika 6y agoIIRC, you have to enable the "strict" mode, or something along those lines, in the settings before it rejects HTTP connections from being made. I had the same issue.
- mehrdadn 6y agoThanks, but then what do I do about HTTP-only sites? Why can't it default to HTTPS and then auto-fallback to HTTP when HTTPS connections fail for sites that aren't in the known-HTTPS list? It seems like a logical thing to do instead of just going straight to HTTP.
- tialaramex 6y agoThis only helps you at all against passive adversaries. An active adversary will just cheerfully block that HTTPS connection because you'll fall back to insecure silently.
- mehrdadn 6y agoI fully understand that and that's still clearly still better than going straight to HTTP, which it's already doing.