obviously cause the Secure Socket layer (https protocol) does encrypt the packets send into your network. in between you and the remote server no one can read those data packets.but normal http protocol doesn't encrypt anything so anyone inbetween you and the remote server can read sending packets. as well as monitor/block/ do whatever they want. but I guess SLT only blocked the http one. and keep the other one remain.