> - You get transparent, free end to end encryption. No flawed root CA system.

Just curious, maybe I am overlooking something: how would this be better than a self-signed and self-generated certificate (apart from the user not being nagged with a warning)?

