CF is amassing a lot of power. With 30% of all Internet Traffic going through CF and them decrypting all HTTPS traffic at the Edge...and able to change any or all of it transparently. This extract from CF's blog reads like a Government/Thread Actor's dream come true....
@thc if they modify the continent and re-sign the HTTPS, will the certificate signature be for them rather than the source site?
@guigsy @thc they hold a certificate which says that they *are* the source site.
@womble you need to use one of their edge certs for them to intercept though. Unless I’m missing something? If you don’t use one you give up proxying and direct server requests but I think that’s pretty much it.