• ShellMonkey@piefed.socdojo.com
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 hours ago

        HSTS says it must be encrypted but a proxy will create two connections and look at it clear in the middle. On the other hand cert pinning says it must be a specific cert that breaks the site if decryption is used. Apple is big on doing that for a lot of their site and apps.