• ShortN0te@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    2 months ago

    That is correct. HSTS helps to some degree but the very first request is still unprotected.