diff options
| author | Osmium Sorcerer <os@sof.beauty> | 2026-04-07 02:55:26 +0000 |
|---|---|---|
| committer | Osmium Sorcerer <os@sof.beauty> | 2026-04-18 16:52:23 +0000 |
| commit | 4bd750ca1f3e446f68e0f88fabf0682fd4d61848 (patch) | |
| tree | 055290f5f171d71bb9b2d0ec43107b30d59d7c1f /webAO/utils/setCookie.ts | |
| parent | 085204dbdf17f379c9a32ea11660accb51b4311d (diff) | |
Replace cookies with localStorage
Cookies's use case is to store persistent data and send it to the server
in subsequent requests, such as to remember logged-in sessions. WebAO is
using them to store site settings like ad-hoc hash tables that require
parsing and serialization.
As a nasty side-effect of how cookies work, clients send all their
settings every time they connect to the server. Server has absolutely no
use for them, but each client sends them anyway, which is an
uncalled-for privacy leak.
Remove this mechanism entirely, switch to localStorage which serves
exactly the purpose of per-origin store with data that never leaves the
browser.
Diffstat (limited to 'webAO/utils/setCookie.ts')
| -rw-r--r-- | webAO/utils/setCookie.ts | 12 |
1 files changed, 0 insertions, 12 deletions
diff --git a/webAO/utils/setCookie.ts b/webAO/utils/setCookie.ts deleted file mode 100644 index 421fe81..0000000 --- a/webAO/utils/setCookie.ts +++ /dev/null @@ -1,12 +0,0 @@ -/* eslint @typescript-eslint/no-explicit-any: "off" */ - -/** - * set a cookie - * the version from w3schools expects these to expire - * @param {string} cname The name of the cookie to return - * @param {any} value The value of that cookie option - */ -const setCookie = (cname: string, value: any) => { - document.cookie = `${cname}=${value};SameSite=Strict`; -}; -export default setCookie; |
