• moonsnotreal
    link
    fedilink
    arrow-up
    8
    ·
    1 year ago

    Yeah, it’s also easy enough to set up that a coding website not doing it is almost embarrassing.

    • 133arc585@lemmy.ml
      link
      fedilink
      arrow-up
      5
      ·
      1 year ago

      Indeed. See my edit on the parent comment–I noticed that the website provides commands to the user to run, which makes it ripe for MITM attacks: if the user is copying-and-pasting commands to run into their shell, those need to be served over HTTPS.