Currently i am sending an HTTP post to power automate with
Microsoft aren't going to allow a non-secured endpoint without being very explicit and in my limited knowledge, I would think if the URL is https then anything backend related would need ensure that it conforms and is secure.