Omtaler for Set Cookie: No secure - No HttpOnly
Set Cookie: No secure - No HttpOnly av ThomazPom
Omtale av Alex
Vurdert til 5 ut av 5
av Alex, 2 år sidenI was wondering if there is a way to selectively remove the 'HttpOnly' flag for specific domain names using your addon. Currently, it applies this setting to all websites, which I believe poses a significant security risk. I only need to remove the flag for a single website (to show it in an iframe), and if you could implement this feature, it would greatly improve the addon's functionality. Your efforts would definitely earn it a 5-star rating from me. Thank you!
Utviklerrespons
postet 2 år sidenThe addon already features this whitelist system, you have to click on the addon icon to open the settings panel
5 omtaler
- Vurdert til 5 ut av 5av 了然, 2 år siden
- Vurdert til 5 ut av 5av Firefox-bruker 15195500, 6 år siden
- Vurdert til 5 ut av 5av Firefox-bruker 14344478, 7 år sidenThanks for writing this extension. A lot of people are looking for ways to read httponly cookies javascript. However it is much easier to remove the httponly flag in transit in the first place.
Utviklerrespons
postet 7 år sidenThank you for your review ! I agree & sometimes, when you do some security tests, you can't edit the code :)