Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I don't get it. I have a website that is purely content and available to everyone. It has no user accounts, no sign-ups, no nothing but static pages. Why should I use HTTPS for that? To prevent man-in-the-middle attacks?


Using HTTPS will let you know if the website you're visited is being messed with by a company, country, or regionally controlled firewall or content filter. If someone operating one of these filters took issue with your site, they could block certain content and users wouldn't necessarily know that it's happening.


Not only attacks, but anyone on the same network on hops in between can see what sites and pages are being visited, the less data you leak, the less likely someone can build a case against you.


Is there a chance someone might modify the way your site appears for censorship or other gain?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: