Skip to content

Enable the HttpOnly flag for experimentation_subject_id cookie

Stan Hu requested to merge sh-set-httponly-experimentation-subject-id into master

This mitigates some OWASP issues.

Closes #34851 (closed)

Edited by 🤖 GitLab Bot 🤖

Merge request reports