https://bugzilla.wikimedia.org/show_bug.cgi?id=52283

--- Comment #3 from Steven Walling <[email protected]> ---
(In reply to comment #2)
> The functionality should not be removed, but I'll let you guys decide how to
> create the best experience.
> 
> Some users are very touchy about being forced to use https, so we need to
> maintain a way to (insecurely) use the site after they login.

Why are they touchy?

Unless login truly does not work for some users if forced to use HTTPS, I think
there is no reason to allow insecure login sessions as an option. It's a
fundamental account security issue. If you want to edit via an insecure
connection, you can continue to do so anonymously.

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are on the CC list for the bug.
_______________________________________________
Wikibugs-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to