Regarding HTTP and HTTPS

I would appreciate anyone's views on the UK Data Protection laws that Matt mentions in this page. I am unaware of these, but if that is true then we would need to reconfigure a number of our services. Surely we can only be expected to encrypt the login data... Without the login data there is not much that can be done!

Jon Witts