Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-09-15 Thread Daniel Veditz
On Tue, Sep 15, 2020 at 10:13 AM Michael Reeps wrote: > Thank you for the prompt response to my email. I guess I interpreted the > standard to mean only when the cookie was intended for cross-site delivery, > which these are not: > If the bug carries the SameSite=None attribute how could the

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-09-14 Thread Daniel Veditz
On Mon, Sep 14, 2020 at 10:00 AM Michael Reeps wrote: > I am seeing this warning now, even when I am in a first party context: > > Cookie "xxx” will be soon rejected because it has the “SameSite” attribute > set to “None” or an invalid value, without the “secure” attribute. The > cookies in

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-09-14 Thread Michael Reeps
On Wednesday, July 1, 2020 at 11:07:36 AM UTC-4, mco...@mozilla.com wrote: > Starting with Beta 79 today, we are rolling out this change to the default > behavior of SameSite cookies to a small percentage of the beta population. > The initial target is 10%, slowly increasing to 50% by the end of

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-08-12 Thread Karla Saenz
On Sunday, August 2, 2020 at 3:07:44 PM UTC-5, lescanom...@gmail.com wrote: > El jueves, 23 de mayo de 2019, 5:34:14 (UTC-3), Andrea Marchesini escribió: > > Link to the proposal: > > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > > > Summary: > > "1. Treat the lack of an

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-08-02 Thread lescanomatias188
El jueves, 23 de mayo de 2019, 5:34:14 (UTC-3), Andrea Marchesini escribió: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-08-02 Thread theila12321
בתאריך יום חמישי, 23 במאי 2019 בשעה 11:34:14 UTC+3, מאת Andrea Marchesini: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-07-26 Thread gf003432
El jueves, 23 de mayo de 2019, 5:34:14 (UTC-3), Andrea Marchesini escribió: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-07-22 Thread mdr291414
On Thursday, May 23, 2019 at 1:34:14 AM UTC-7, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-07-22 Thread Mike Conca
On Tuesday, July 21, 2020 at 4:44:02 PM UTC-6, CJ Baumer wrote: > To clarify, Firefox intends to roll out both SameSite=Lax as default and > require Secure for SameSite=None at the same time correct? Yes, these changes are both rolling out simultaneously. Mike Conca Group Product Manager,

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-07-21 Thread CJ Baumer
On Wednesday, July 1, 2020 at 11:07:36 AM UTC-4, mco...@mozilla.com wrote: > Starting with Beta 79 today, we are rolling out this change to the default > behavior of SameSite cookies to a small percentage of the beta population. > The initial target is 10%, slowly increasing to 50% by the end of

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-07-01 Thread Mike Conca
Starting with Beta 79 today, we are rolling out this change to the default behavior of SameSite cookies to a small percentage of the beta population. The initial target is 10%, slowly increasing to 50% by the end of the beta cycle. We will hold at 50% for at least two more beta cycles, at which

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-06-16 Thread nileshsonichorau15
On Thursday, May 23, 2019 at 2:04:14 PM UTC+5:30, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-06-02 Thread rabixwolf2017
El jueves, 23 de mayo de 2019, 2:34:14 (UTC-6), Andrea Marchesini escribió: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-05-03 Thread sugyannayak2004
> Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value "key=value" will >produce a cookie equivalent to "key=value;

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-30 Thread jalalmolla
Il giorno giovedì 23 maggio 2019 10:34:14 UTC+2, Andrea Marchesini ha scritto: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-30 Thread jalalmolla
Il giorno giovedì 23 maggio 2019 10:34:14 UTC+2, Andrea Marchesini ha scritto: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-30 Thread jalalmolla
Il giorno giovedì 23 maggio 2019 10:34:14 UTC+2, Andrea Marchesini ha scritto: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-26 Thread llilitavi
recheckd and is fine tru ___ dev-platform mailing list dev-platform@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-platform

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-23 Thread tmeberniez--- via dev-platform
On Thursday, May 23, 2019 at 4:34:14 AM UTC-4, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-17 Thread jeuxsummerland
On Monday, April 13, 2020 at 12:40:43 PM UTC-4, maksga...@gmail.com wrote: > четверг, 23 мая 2019 г., 11:34:14 UTC+3 пользователь Andrea Marchesini > написал: > > Link to the proposal: > > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > > > Summary: > > "1. Treat the lack

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-13 Thread maksgajdenko
четверг, 23 мая 2019 г., 11:34:14 UTC+3 пользователь Andrea Marchesini написал: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-11 Thread tysoon1020
در پنجشنبه 23 مهٔ 2019، ساعت 13:04:14 (UTC+4:30)، Andrea Marchesini نوشته: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-04-07 Thread bb0859745
Add me. Hhhh ___ dev-platform mailing list dev-platform@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-platform

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-31 Thread kyle . blair2008
On Thursday, May 23, 2019 at 4:34:14 AM UTC-4, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-31 Thread gardmkdg1
On Thursday, May 23, 2019 at 4:34:14 AM UTC-4, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-11 Thread thalesxr02
Em quinta-feira, 23 de maio de 2019 05:34:14 UTC-3, Andrea Marchesini escreveu: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-09 Thread gabimolayof
בתאריך יום חמישי, 23 במאי 2019 בשעה 11:34:14 UTC+3, מאת Andrea Marchesini: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-06 Thread yucagamer006
eae galera n tirem meu google de mim porfavor ___ dev-platform mailing list dev-platform@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-platform

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-05 Thread kolonya20171
23 Mayıs 2019 Perşembe 11:34:14 UTC+3 tarihinde Andrea Marchesini yazdı: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-03-01 Thread F R A N C I S
El jueves, 23 de mayo de 2019, 4:34:14 (UTC-4), Andrea Marchesini escribió: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-02-29 Thread francoelefante00
so che siete dei bugiardi e vi scopriranno presto i carabinieri ___ dev-platform mailing list dev-platform@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-platform

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-02-27 Thread amarchesini
Hi everyone, here is something more about cookies sameSite=lax by default. In order to test this feature properly and to see the level of breakage introduced, we've decided to enable it in nightly. Bug: https://bugzilla.mozilla.org/show_bug.cgi?id=1604212 This feature is partially covered by

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2020-02-14 Thread oneovr
On Thursday, May 23, 2019 at 3:34:14 AM UTC-5, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-21 Thread abdulwahab123125
On Thursday, May 23, 2019 at 1:34:14 AM UTC-7, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-21 Thread abdulwahab123125
On Thursday, May 23, 2019 at 1:34:14 AM UTC-7, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-10 Thread vitinho9999o
quinta-feira, 23 de Maio de 2019 às 09:34:14 UTC+1, Andrea Marchesini escreveu: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-07 Thread 23gpagantorres
how you are ___ dev-platform mailing list dev-platform@lists.mozilla.org https://lists.mozilla.org/listinfo/dev-platform

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-07 Thread 23gpagantorres
On Wednesday, November 6, 2019 at 1:54:23 PM UTC-5, kahelim...@gmail.com wrote: > בתאריך יום חמישי, 23 במאי 2019 בשעה 11:34:14 UTC+3, מאת Andrea Marchesini: > > Link to the proposal: > > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > > > Summary: > > "1. Treat the lack of

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-06 Thread kahelimohanad14
בתאריך יום חמישי, 23 במאי 2019 בשעה 11:34:14 UTC+3, מאת Andrea Marchesini: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-02 Thread 001m . gots
Asi O es mejor + A cookie associated with a resource at http://trc.taboola.com/ was set with `SameSite=None` but without `Secure`. A future release of Chrome will only deliver cookies marked `SameSite=None` if they are also marked `Secure`. You can review cookies in developer tools under

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-11-02 Thread 001m . gots
El jueves, 23 de mayo de 2019, 4:34:14 (UTC-4), Andrea Marchesini escribió: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie"

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-10-31 Thread jmuir1
On Thursday, 23 May 2019 18:34:14 UTC+10, Andrea Marchesini wrote: > Link to the projchdfuao uo p;a ciwgbyis ygidq aurotuoeaip gup vygiupgayei > whejioyopuas9rqyw9e-fyes09uya90explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value "key=value" will >

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-10-16 Thread lambanth71
On Thursday, May 23, 2019 at 4:34:14 AM UTC-4, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-10-14 Thread jrossainz79
On Thursday, May 23, 2019 at 3:34:14 AM UTC-5, Andrea Marchesini wrote: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-10-13 Thread ginfung1225
在 2019年5月23日星期四 UTC+8下午4:34:14,Andrea Marchesini写道: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the "Set-Cookie" value "key=value" will >

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-10-12 Thread pajeroextreme
Em quinta-feira, 23 de maio de 2019 05:34:14 UTC-3, Andrea Marchesini escreveu: > Link to the proposal: > https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 > > Summary: > "1. Treat the lack of an explicit "SameSite" attribute as >"SameSite=Lax". That is, the

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-05-23 Thread Mike West via dev-platform
On Thu, May 23, 2019 at 10:53 AM Frederik Braun wrote: > Having read the proposal, I think it's a good mechanism for us to know > about websites that want third-party cookies and it seems less costly to > deploy for websites than Storage Access API. > > However, it seems this is Google's counter

Re: Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-05-23 Thread Frederik Braun
Having read the proposal, I think it's a good mechanism for us to know about websites that want third-party cookies and it seems less costly to deploy for websites than Storage Access API. However, it seems this is Google's counter to Apple's Storage Access API, which we have also implemented in

Intent to implement: Cookie SameSite=lax by default and SameSite=none only if secure

2019-05-23 Thread Andrea Marchesini
Link to the proposal: https://tools.ietf.org/html/draft-west-cookie-incrementalism-00 Summary: "1. Treat the lack of an explicit "SameSite" attribute as "SameSite=Lax". That is, the "Set-Cookie" value "key=value" will produce a cookie equivalent to "key=value; SameSite=Lax".