javascript - Why facebook does not use public key to encrypt password before sending it to the server? -
as shown in screen shot above facebook showing users password in request headers. i curious know why facebook not hiding password using public key. edit: even if work of https encrypt data https can broken using fiddler applications. what's wrong in encrypting password before sending server? as @wizkid have commented password encrypted using https before sent browser, console checking in gets data before encrypted. can try using tool fiddler see sent