Use HTTPS and not HTTP for all user data traffic to your server and stop exposing customers private text to anyone that can put a packet sniffer on the connection

Currently because this application processes the user typed text in the "cloud" on the vendors server it needs to be sent using a secure HTTPS SSL connection and not a publicly readable plain text that can be read by anyone that can sniff packets on the internet between the end user and the processing server. There needs to be an active non-disclosure agreement between end user and vendor too.

