Hmmm, why doesn't the site have https?
I think the author had a spat on twitter a while back because of the same question. There really isn't any excuse to not have TLS on your site, even if purely to thwart MITM injection. Most arguments are BS but still keep popping up: - heavy on the CPU (not with anything after 2006) - hard to setup (not with LE + ACME) - I don't process information (that doesn't matter/is not the reason, DPI, MITM come to mind) - bro…
Ok, I guess that explains downvote to my post. I was just wondering. Cause now we can get free SSL with let's encrypt. And since traffic and be hijacked and modified, it just seems to make sense to have a site that serves text files to have ssl.