To enhance security on user data
Make it HTTPS
Started by arnpro [532140] on in API Development.
About this thread
Posts archived: 8 / 8 posts (100%) · the total is Torn's reply count + the opening post at the last fetch
Counted by TornLife from the archived posts.
- Archived posts
- 8
- Discussion span
- →
- People posting
- 5
- Likes on archived posts
- 8
- Posts by staff, officers and moderators
- 1
- Authority score
- 74 / 100
- Historical score
- 30 / 100
- Story score
- 32 / 100
- Engagement score
- 55 / 100
Most-liked replies
- aurel1 [1046304] Admin
· 3 likes ·
Https is already available, you can use it with api.torn.com requests.
To enhance security on user data
The bloody site isnt even HTTPs. Make everything https!
Https is already available, you can use it with api.torn.com requests.
Oooh didnt notice the site is https. Disregard what i just said!
All style sheets, Javascript etc. are however loaded via HTTP only in the API website at least.
I suggest to make links relative to the used protoool by using "//www.torn.com/etc" so leave http/https out from there. Doesn't matter for the actual api usage, but the API website looks shitty otherwise
Rex
Why not just default to https? Is there really any point in not using it?
Edit: And thats not even true, torn uses relative links to include stylesheets and js?
Oh You're talking about the API. Yeah would be sensible...
i prefer not to - all my difficulties for every target i have ever warred against ever isnt on HTTPS, so i have to change that when i war
Agree about defaulting to HTTPS. But since it hasn't happened till today I doubt it will now.
And yes, I specifically meant the API website. The first thing it did when opening it was change the link (automatically) and I saw the layout mess, so it was just a piece of advice for those users that take HTTPS into their own hands to make it look better :)
@phoenix: it has no impact on that.