"In theory, a user presented with a self-signed certificate warning should compare the certificate fingerprint with a copy of the fingerprint delivered through an alternate channel. In practice, users click “Accept” and get on with their day.¹

¹ See also: SSH server key fingerprints."

0

If you have a fediverse account, you can quote this note from your own instance. Search https://io.mwl.io/users/mwl/statuses/114421799239732866 on your instance and quote it. (Note that quoting is not supported in Mastodon.)