Skip to content

Instantly share code, notes, and snippets.

@wilmoore
Last active October 25, 2024 19:01
Show Gist options
  • Select an option

  • Save wilmoore/7dc45cd37b0746429299bf73d0ed87ba to your computer and use it in GitHub Desktop.

Select an option

Save wilmoore/7dc45cd37b0746429299bf73d0ed87ba to your computer and use it in GitHub Desktop.
Personal Brand :: Social Media :: LinkedIn :: Post :: HTTPS Cookie Security

Personal Brand :: Social Media :: LinkedIn :: Post :: HTTPS Cookie Security

⪼ Made with 💜 by Polyglot.

reference
related
research
» HTTPS Cookie Security «

Once a cookie is set, the value is sent along with every subsequent request to the same server.

↳ Typically, JavaScript in the browser can access the cookie's value `document.cookie`
↳ This is convenient; however, it's much safer to set cookies to `Secure` and `HttpOnly`

This one setting essentially makes them "HTTPS-Only" cookies and you're good to go.

Țechśavvy CEO
How are you currently handling or planning on handling cookie security in your web application? 👇🏾

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment