@mtrantalainenAs @ocdtrekkie has argued, the "No User Recourse" portion of the HSTS RFC is malicious, and should be disregarded. A browser should be a "user agent", working on behalf of the user. However, with the current Firefox implementation, cont...
@Lisha... none of which are actual solutions to our problem. These solutions only work if the site is already in the HSTS list, and not actively sending a HSTS header while accessing the site (and then not providing correct encryption). The latter is...
If even Google/Microsoft are more user friendly than Firefox, then something has gone very wrong. The point of free software and the philosophy Mozilla is advocating is that I, as the user, control my software, not that the software controls me. Its ...