Hacker News new | past | comments | ask | show | jobs | submit login

And the worst is that you need to exactly match the domain and path semantics in order to delete the cookie! Domain is easy enough because there are only two options - available to subdomain and not available to subdomain. But if you have a cookie with the `/path` set and you don't know what value was used, you literally cannot delete that cookie from JS or the backend. You need to either pop open devtools and look at the path or ask the end user to clear all cookies.





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: