HTTP Considered Harmful

It looks like Google is using its position as a supplier of chrome to move all sites away from using HTTP to the more secure HTTPS protocol. From January next year any site that requests password or credit card details and does not use HTTP will be flagged as insecure – longer term ALL sites using HTTP will be flagged as insecure.

Google say.

Eventually, we plan to label all HTTP pages as non-secure, and change the HTTP security indicator to the red triangle that we use for broken HTTPS

Its a Nobel idea but moving a site from http to https is not as easy as some people make out and it does add a performance hit maybe the upcoming http2 will get round the issue by speeding up sites. Another problem is using ones power to bully people into changes can lead to cynics arguing that this is to protect Googles business model.

