I noticed that not all items called by the wp-stripe iFrame are secure. This is due to how the WP_STRIPE_PATH is functioning.

I did find this discussion online which talkes about the recommended way to determine plugin directories.
http://wordpress.org/ideas/topic/wp_plugin_url-doesnt-take-ssl-into-account