Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Chrome enforces that the signature being served by google is the same signature as the one being served by google. It's a useless verification. If Google were so inclined, they could very well just change the <link> tag too.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: