Comment on Google flags Immich sites as dangerous

<- View Parent
Count042@lemmy.ml ⁨1⁩ ⁨day⁩ ago

Yes, a website without SSL is very likely a phishing attack, it means someone might be impersonating the real website and so it shouldn’t be trusted. Even if by a fluke of chance you hit the right site, all of your communication with it is unencrypted, so anyone in the path can see it clearly.

No, Google has hit me with this multiple times for sub domains where the subdomain is the name of the product and has a login page.

So, for example, if I have emby running at emby.domain.com they’ll mark it as a phishing site. You have to add your domain to their web console and dispute the finding which is probably automated. I’ve had to do this at least three times now.

All my certs were valid.

source
Sort:hotnewtop