Earlier quoted context omitted.
Hi apo - Giri Sreenivas, co-founder and CEO of Helm here. The gateway funnels packets to and from the Helm servers in people's homes. These are packets of encrypted TLS sessions so we can't do anything with this traffic. Happy to answer any further questions or concerns.
That is not entirely true. Perhaps in the stated configuration it is, but since the domain points to the EC2 instance, you could always register a new LetsEncrypt certificate for it, and do a silent MITM. Perhaps the architecture you describe is the best, however I would hope for two things to be supported: 1) The ability to run your own gateway server instead of having to trust one managed by your company. 2) The ab…
#1 is something we will support via open source.