You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I have just opened publicsuffix/publicsuffix.org#46, but I am wondering if there are any other inaccuracies in other parts of the documentation. I did not find any explicit documentation stating that "cookies cannot be set on public suffixes" - though I might have missed it!
The documentation claims that cookies cannot be set on public suffixes but that is simply not true.
Host cookies (
__Host-
or simply nodomain=...
) always work.Domain cookies (with e.g.
domain=example.com
) automatically degrade to host cookies by having their domain string reset as specified in https://datatracker.ietf.org/doc/html/draft-ietf-httpbis-rfc6265bis-15#section-5.7-3.9.1 and variations thereof.The text was updated successfully, but these errors were encountered: