Because access to that resource can be replicated by simply viewing network traffic logs. Sending authorization info in the headers over SSL would be much more safe.
The path is exactly as secure as authorization headers. Network logs will not show the path of SSL requests (it's encrypted).
If you give your link to a dodgy search engine, you've lost.