@mtrantalainenYou didn't read my message, did ya? The chapter you referenced previously (chapter 12) is non-normative. Even the title of section 12 says "User Agent Implementation Advice". Which means Firefox can implement a hidden workaround and sti...
I've just realized that the whole of section 12 in RFC 6797 is non-normative. Even the title of section 12 says "User Agent Implementation Advice". Which means that the "No User Recourse" portion doesn't even need to be followed, while still being co...
@mtrantalainenAs @ocdtrekkie has argued, the "No User Recourse" portion of the HSTS RFC is malicious, and should be disregarded. A browser should be a "user agent", working on behalf of the user. However, with the current Firefox implementation, cont...