Skip to content

Add secure and samesite flags to badge cookie

Cecylia Bocovich requested to merge cohosh/snowflake-webext:issue/28 into main

It looks like there have been several browser security improvements to prevent CSRF attacks. Chrome and Firefox now require cross-site cookies to have the secure and samesite attributes set.

I'm hoping this solves the issue we're seeing on both Chrome and Firefox.

Closes #28 (closed)

Merge request reports

Loading