Conversation

deviantart locking 2fa behind premium is one of the moves of all time lmao

3
1
1

@tay same vibes as pastebin.com locking HTTPS behind premium as late as march 2017 holy shit

(lets encrypt was available for years before that. there is zero excuse to make TLS a premium feature. jesus fuck.)

2
1
1
@tay hahaha account safety is clearly a skill issue, just pay up and secure your account /s
0
0
0

@5225225 @tay if you are already paying for an SSL certificate why not make the whole site use it

you paid 100% too much for the ssl certificate go use it

1
1
1
@5225225 @tay "capitalism encourages innovation!"

the innovation in question:
0
0
0

@charlotte @tay "but TLS is too expensive CPU-wise :("

(also this leads to the funny implication that your session cookies are just sent in plaintext if you don't have a pro account?? hello firesheep :))

at least, as far as it can tell(wayback machine has archived https://pastebin.com/login), the login page supported TLS even before you logged in. so there's that.

but still. lol lmao.

at least TLS is nearly universally supported by websites nowadays apart from some sites that are "um actually TLS is not needed for static sites (hello textfiles.com)" (couldn't actually find a reasoning behind not supporting TLS at all there, and some subdomains support it fine ( https://discmaster.textfiles.com/ ))

1
0
0

@5225225 @tay

“um actually TLS is not needed for static sites

has the admin forgotten about the time when ISPs injected ads into websites

0
0
1