Skip to content
This repository has been archived by the owner on Nov 4, 2024. It is now read-only.

Set-cookie: HttpOnly flag seems to misinterpreted by Observatory checks #513

Open
ArtM01 opened this issue Sep 25, 2023 · 0 comments
Open

Comments

@ArtM01
Copy link

ArtM01 commented Sep 25, 2023

The Raw Server Headers are correctly shown but Observatory checks indicate the flag is missing.

Set-Cookie ASPSESSIONIDAUTAQTCS=; secure; path=/; HttpOnly

Can you please let me know if there is anything wrong with it?

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant