Skip to content

Comment on No same site = None cookies for iOS18

Comments

Oh boy i'm getting headaches again about SSO flows. How comes web development was easier back in 2005 than in 2024?

Because you were introducing exploits in your "SSO flow" in 2005. You can't have your cake and eat it too. If you want organizations (that spend billions on, and make this software free of cost) to care about security, there will usually be a slight inconvenience penalty you have to pay to comply with better patterns.

Security and privacy

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.