One of the benefits of letting AWS handle all my encryption needs is that it's always going to be basically state of the art. I'm more surprised you aren't seeing this error on EVERY website.
On the bright side, you know what data you're sending to cowtool.com, and it isn't much. Heck, even your login technically doesn't go to "me", it goes straight to AWS Cognito.