Hi,
review isn't forcing https. Can we please do this? Otherwise stealing cookies is posibble. Review supports https. There is atm an CACert based certificate and CaCert isn't included in the default root keychain. Thus a normal user will shown a big fat warning, not to connect to review.coreboot.org, because the certificate is unknown and untrusted. I don't have a problem with that and I like CaCert. But if CaCert is the reason not enabling https-only, than let us change to StartSSL or someother SSL authority.
Best lynxis
PS. Same issue on www.coreboot.org, but stealing review is much more worse than stealing wiki cookies. PPS. Please write a +1 if you're supporting this opinion.