I keep seeing pearl clutching posts about this could flare blog, and I'm not sure I really get it, tbh?

blog.cloudflare.com/password-r

Are people just realizing the scale of access that a reverse proxy has to traffick it handles? Because, um, this doesn't seem notable to me. Like, sure, absolutely stop using cloud flare. It's run by absolutely garbage human beings. But if you've already decided to let a third party terminate your TLS connections, then this the kind of thing they can and will do. If fastly or bunny or whoever doesn't do this kind of inspection and analysis, it's only because they don't think they can productize it, not because they're unable or unwilling to do so.

0

If you have a fediverse account, you can quote this note from your own instance. Search https://hachyderm.io/users/jenniferplusplus/statuses/114179039622086437 on your instance and quote it. (Note that quoting is not supported in Mastodon.)