Skip to content
Discussion options

You must be logged in to vote

Thank you for your question @mvldebian

Unfortunately no.

This is an intentional design choice based on our security model. We aim to ensure that all communications are always protected end-to-end between the user and the Globaleaks server.

Allowing HTTP configurations - even as an option - would significantly increase the risk of insecure or misconfigured deployments, especially in sensitive whistleblowing environments.

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Answer selected by evilaliv3
Comment options

You must be logged in to vote
1 reply
@evilaliv3
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants
Converted from issue

This discussion was converted from issue #4784 on March 19, 2026 09:43.