ben174 / ben174/hsts-cookie

(Thankfully) this no longer works

Open
#10 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
JavaScript
Stars
170
Forks
22
PR merge metrics
No merged PRs in 30d

Description

Most major browsers have fixed this loophole now, as I've tested with my own implementation of this hack [here](https://github.com/pulsejet/HSTS-SuperCookie). I think the README should be updated to reflect this.

Contributor guide

No contributing guide indexed for this repository

Research direction

Open the README and compare its description of the HSTS loophole with the behavior tested in the linked HSTS-SuperCookie implementation. Update the README to note that major browsers have fixed the loophole, then verify that the documentation accurately describes the current behavior.

Written by the indexing model from the issue text.

Assessment

Tech stack
javascript
Domain
documentation
Issue type
Documentation
Difficulty
1/5
Estimated time
Under an hour
Activity status
Stale
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.