> The Mozilla extension will always make a secure request to the Cloudflare network, regardless if the request is for TLS or plaintext
(From Cloudflare's privacy notice: https://www.cloudflare.com/mozilla/firefox-private-network-p...)
Now there's an interesting thought. Since the extension is routing requests at the application layer rather than at the network level, would it be possible to only route unencrypted HTTP requests through Cloudflare, while leaving encrypted HTTPS connections unaffected in order to avoid any latency penalty and save resources on Cloudflare's end?
I'd love an extension/VPN app that runs silently in the background and automatically routes unencrypted requests through a private connection, while simultaneously leaving encrypted connections untouched. Maybe even have a whitelist of trusted Wi-Fi networks where the system is automatically turned off.
Done right, a service like that could potentially allow users to use unencrypted Wi-Fi networks without having to worry about MITM attacks, without imposing any of the downsides that come with leaving a VPN running 24/7.