When accessing the manager over an encrypted (https) connection, the dashboard page throws mixed content warnings in various browsers. The insecure content is coming from the default MODX security feed at
http://feeds.feedburner.com/modxsecurity . The feed includes 1x1 pixel tracking images that are all served over http, hence the warnings.
The tracking images are being inserted by Feedburner, they are not present in the source feed:
https://forums.modx.com/board.xml?board=8 . They can be toggled off from the Feedburner settings panel under 'Analyze > Services > Configure Stats > Item views' (uncheck Item Views).
While this doesn't actually make the manager less secure, it is somewhat difficult to explain why the dashboard doesn't show a lock icon (or similar) to clients. The solution is to either disable the feed altogether or write some kind of proxy script that strips out the image tags.
Has anyone else experienced this issue? How could we go about getting those tracking images removed from the feed?