. sending this to you since I don't know who this Tom guy is, but this is a vital mistake.
Any site accessed without HTTPS is treated as insecure by any modern browser.
SHA-1 is a hashing algorithm, not a encryption algo. At that, it's one that has been broken.
Conversation
SSL is also no longer the standard either. TLS 1.2+ is generally advised now.
LetsEncrypt offers free, non-self-signed certs.
Please don't reinvent the wheel here.
I'm glad to see MotK coming back, but I will not use it if it remains in this state.
1
1
2
