Edit: To be clear, I mean the spying hurts our industry.
You mean because "outsiders" will see us as childish or for some technical reason?
Eh?
1) Visting http://www.openssl.org automatically redirects me to https://www.openssl.org .
2) The OpenSSL source code is stored in a git repo in GitHub. While this doesn't ensure that the code hasn't been tampered with, git does make it substantially easier to detect tampering than other VCSs do.
3) All of the release tarballs are PGP signed. Verification of the authenticity of these files is just about as automatic as it gets.
And if I recall correctly, it was http://openssl.net not https://.
Is it possible there have been some changes in recent years?
Well, I made my comment based largely on information that I verified a few minutes before I wrote the comment. I'm unaware of the site's history.
This is exactly what the NSA wants. That you feel like you're on the right side and "sticking it to the man" while they laugh all the way to their long term data storage.
What is it intended to accomplish? What is the actual statement being made, and who is the intended audience? Not the government - they already know what PRISM is. Also not the common internet user. If it had the potential to be effective at influencing or censoring political dialogue, I would be upset at the attempt to bake propaganda (however sympathetic the tech community might be to it) into what should be a politically neutral protocol. But it does seem more like a prank than anything else.
So it's your assertion that a thing cannot be both "childish" and "political speech" at the same time?