Progress is being made, and significant water is being sweated out :/
My downward slope of weight has resumed after my ill-advised trial of 23:1 intermittent fasting (I simply could not eat enough in that 1h to make it work).
Now 128.5kg (down from 141 when I started)
According to my fitness and food trackers, I should aim for 1680 kcal per day to lose the weight I want. Today I ate 1419 kcal supposedly, which wouldn't be so bad but I also did an alleged 2005 kcal of activity (walks and cycling) which means I have 2266 kcal left to eat.
So yes, unless you're in the preload list, it won't prevent a MITM doing an HTTP-only thing, but the moment *any* resource gets loaded from the HTTPS real site, the browser is "fixed"
HSTS tells browsers to ignore the HTTP response other than the redirect-to-HTTPS, and then the HTTPS served HSTS locks the browser in for the period the HSTS header states.