
Let me reveal an additional debate against "normal" certificates for onion domain names. The issue is that they e with an OCSP responder target. Thus, the browser goes and make contact with that responder, probably deanonymizing your. Just what Twitter needs completed will be have actually OCSP reaction stapled - without one, the problem is even bad than unencrypted http.
No...