Earlier quoted context omitted.
Https does nothing for security. Its purpose is to authenticate financial transaction packets, not to be "secure". (Whatever that means.)
> Https does nothing for security. What sort of definition are you using for security? It's obviously not the standard one. Sending passwords in the clear vs not is covered on the first day of security 101.
Which you don't have, because you're not doing security. Just buzzwords.