In a nutshell: installing this mod and set it as security.http_mods may cause security issues. Do not do so. There are no problems when you don't use its HTTP functions.
i3 stores its HTTP API in i3.http, which is a global variable.
tbh this really is something that should be addressed as a issue one the github repo rather than a review
and now that it is resolved is probably best converted to a thread
converted review to thread