📄️ Certificate trust and corporate CA interception
Summary: HTTPS clients only trust certificates signed by a CA in their own trust store.
📄️ Exposing localhost with a tunnel
Summary: a machine behind NAT has no public address, so nothing on the internet can call