Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> We identified and mitigated many technical challenges in the discovery process of the migration.

Turning on HTTPS is not a one-step migration.

Turning on CSP has also proven to be very difficult for nearly every site who wishes to turn it on.

Where I work I am dealing with production issue with one of the security features, which by enabling it we observed redirection loop. I am not saying this is an excuse but there are challenges.



I'm not saying it's easy, but if "safety is top priority", it shouldn't take this long.




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: