Conversation

my name is John Security. the non-security-sensitive javascript property you’re trying to access is only available in secure contexts. better learn the openssl command line buddy, having a messily stored self-signed CA in your trust store is totally a security win. i am improving the world. i am in every IETF working group ever made

1
0
0

i just want to talk to the person who made https://developer.mozilla.org/en-US/docs/Web/API/Cookie_Store_API only accessible in secure contexts. it’s literally an abstraction over document.cookie what do you mean

2
0
0

my name is John Mozilla. the Gamepad API is security sensitive
https://developer.mozilla.org/en-US/docs/Web/API/Gamepad_API

1
1
0

@mia why are you using cookies in 2025.

1
0
0

@mia we’ve had localStorage for a decade

1
0
0

@eri @mia doesn’t send it to the server with the standard browser raccess raccontrols

1
0
0

@charlotte @mia the fuck does your server need the cookies for ya snoopin ass

1
0
0

@mia @charlotte i forgot that we live in a world where webapps exist. and for a moment i was happy

0
0
1

Sven Slootweg, low-spoons mode ("still kinky and horny anyway")

@mia This is the result of a policy decision to gate new features in general behind usage of TLS, to push for its adoption (a policy which different browser vendors have adopted to different degrees and in different places)

0
0
0