Because the protocol encrypts all customer-server communications via SSL/TLS authentication, attackers simply cannot intercept info, which means users can safely enter their private data. CIDR is based on the concept that IP addresses can be allotted and routed based on their network prefix rather then their class, which was the http://XXX