Replies: 1 comment 1 reply
-
Safari is probably the major outlier but both RFC 6265 and the draft you linked ultimately leaves it up to each user agent to define what constitutes as "secure channels" |
Beta Was this translation helpful? Give feedback.
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I haven't found any issues/discussions regarding this but if this was already teared to pieces then sorry.
I see the following mentioned on many places in the current web page:
According to my experience and some documents this is not true because localhost is handled differently by most browsers if not all.
Source: MDN Cookies
Source: MDN Set-Cookie
Source: rfc6265bis - This RFC is planned to replace rfc6265.
I'm wondering if the quoted string and checking for env value in the current Lucia documents are needed or not. What do you think? Am I wrong here? Is it for compatibility?
Beta Was this translation helpful? Give feedback.
All reactions