WebApp Sec mailing list archives
Assuming you are using https, then this seems like reasonable security... or am I missing something?
By Date By Thread