[buddypress-trac] [BuddyPress Trac] #6961: Support HttpOnly and Secure cookies

buddypress-trac noreply at wordpress.org
Wed Mar 16 19:44:17 UTC 2016


#6961: Support HttpOnly and Secure cookies
---------------------------------+---------------------
 Reporter:  DJPaul               |       Owner:  djpaul
     Type:  enhancement          |      Status:  closed
 Priority:  normal               |   Milestone:  2.6
Component:  Component - Any/All  |     Version:
 Severity:  normal               |  Resolution:  fixed
 Keywords:                       |
---------------------------------+---------------------

Comment (by DJPaul):

 I've added Secure cookie support, but not HttpOnly because some (maybe
 all) are accessed with Javascript -- certainly the theme ones, and the
 group wizard cookies are good contenders for someone accessing with
 Javascript. I haven't time to audit all the cookies in that level of
 detail at the moment, so maybe we can do that in the future, perhaps when
 we rework the template pack. ;)

--
Ticket URL: <https://buddypress.trac.wordpress.org/ticket/6961#comment:3>
BuddyPress Trac <http://buddypress.org/>
BuddyPress Trac


More information about the buddypress-trac mailing list