Is there a reason why *.redump.org is still served only under HTTP? Even just the option would be nice, since currently HTTPS traffic isn't even served.

Agree. You guys could just add a free Let's Encrypt cert. In this times I don't think there's a valid reason to not use https by default. The 80 port should only be used to send a 301 to https, IMHO.

Also, that means the login is done over an unencrypted connection. Thats not ideal.