- Access to Tatami's login page with HTTPS protocol
- Login using Google Apps
- The user is redirected to timeline page using HTTP protocol.
Expected behaviour:
3. The HTTPS protocol is used.
This is a security issue as you loose confidentiality and application integrity.