René's URL Explorer Experiment


Title: Reject cookies from third-party applications by RubenVerborgh · Pull Request #526 · nodeSolidServer/node-solid-server · GitHub

Open Graph Title: Reject cookies from third-party applications by RubenVerborgh · Pull Request #526 · nodeSolidServer/node-solid-server

X Title: Reject cookies from third-party applications by RubenVerborgh · Pull Request #526 · nodeSolidServer/node-solid-server

Description: Otherwise, when a user is logged in to their Solid server, any third-party application could perform authenticated requests without permission by including the credentials set by the Solid server. ...

Open Graph Description: Otherwise, when a user is logged in to their Solid server, any third-party application could perform authenticated requests without permission by including the credentials set by the Solid server. ...

X Description: Otherwise, when a user is logged in to their Solid server, any third-party application could perform authenticated requests without permission by including the credentials set by the Solid server. ...

Opengraph URL: https://github.com/nodeSolidServer/node-solid-server/pull/526

X: @github

direct link

Domain: github.com

route-pattern/_view_fragments/voltron/pull_requests/show/:user_id/:repository/:id/pull_request_layout(.:format)
route-controllervoltron_pull_requests_fragments
route-actionpull_request_layout
fetch-noncev2:4ed671cf-59c4-4bb0-ed64-996165defea9
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idD6DA:2F9F8B:7FBACEF:A5D7FAF:6975CE09
html-safe-noncee13f9e393306f85ddb21d8f0d18133a38ad4a292bb73a68148e1465d47368172
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJENkRBOjJGOUY4Qjo3RkJBQ0VGOkE1RDdGQUY6Njk3NUNFMDkiLCJ2aXNpdG9yX2lkIjoiODkzMjUyNDI0MDY4MjczMzA2NSIsInJlZ2lvbl9lZGdlIjoiaWFkIiwicmVnaW9uX3JlbmRlciI6ImlhZCJ9
visitor-hmac31a768d1dbc4273d4292ed720cd169cd6677b6caebe67b6ddd52bdebf0c038ab
hovercard-subject-tagpull_request:132363795
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///voltron/pull_requests_fragments/pull_request_layout
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/_view_fragments/voltron/pull_requests/show/nodeSolidServer/node-solid-server/526/pull_request_layout
twitter:imagehttps://opengraph.githubassets.com/d24fe6307364873d52659b42d0c2d6192f6787264a34e5cd483295e871e52b3f/nodeSolidServer/node-solid-server/pull/526
twitter:cardsummary_large_image
og:imagehttps://opengraph.githubassets.com/d24fe6307364873d52659b42d0c2d6192f6787264a34e5cd483295e871e52b3f/nodeSolidServer/node-solid-server/pull/526
og:image:altOtherwise, when a user is logged in to their Solid server, any third-party application could perform authenticated requests without permission by including the credentials set by the Solid server. ...
og:image:width1200
og:image:height600
og:site_nameGitHub
og:typeobject
og:author:usernameRubenVerborgh
hostnamegithub.com
expected-hostnamegithub.com
None4a4bf5f4e28041a9d2e5c107d7d20b78b4294ba261cab243b28167c16a623a1f
turbo-cache-controlno-preview
go-importgithub.com/nodeSolidServer/node-solid-server git https://github.com/nodeSolidServer/node-solid-server.git
octolytics-dimension-user_id104446421
octolytics-dimension-user_loginnodeSolidServer
octolytics-dimension-repository_id24306004
octolytics-dimension-repository_nwonodeSolidServer/node-solid-server
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id24306004
octolytics-dimension-repository_network_root_nwonodeSolidServer/node-solid-server
turbo-body-classeslogged-out env-production page-responsive
disable-turbofalse
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release488b30e96dfd057fbbe44c6665ccbc030b729dde
ui-targetcanary-2
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/nodeSolidServer/node-solid-server/pull/526#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FnodeSolidServer%2Fnode-solid-server%2Fpull%2F526
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FnodeSolidServer%2Fnode-solid-server%2Fpull%2F526
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fvoltron%2Fpull_requests_fragments%2Fpull_request_layout&source=header-repo&source_repo=nodeSolidServer%2Fnode-solid-server
Reloadhttps://github.com/nodeSolidServer/node-solid-server/pull/526
Reloadhttps://github.com/nodeSolidServer/node-solid-server/pull/526
Reloadhttps://github.com/nodeSolidServer/node-solid-server/pull/526
nodeSolidServer https://github.com/nodeSolidServer
node-solid-serverhttps://github.com/nodeSolidServer/node-solid-server
Notifications https://github.com/login?return_to=%2FnodeSolidServer%2Fnode-solid-server
Fork 305 https://github.com/login?return_to=%2FnodeSolidServer%2Fnode-solid-server
Star 1.8k https://github.com/login?return_to=%2FnodeSolidServer%2Fnode-solid-server
Code https://github.com/nodeSolidServer/node-solid-server
Issues 295 https://github.com/nodeSolidServer/node-solid-server/issues
Pull requests 21 https://github.com/nodeSolidServer/node-solid-server/pulls
Actions https://github.com/nodeSolidServer/node-solid-server/actions
Projects 0 https://github.com/nodeSolidServer/node-solid-server/projects
Wiki https://github.com/nodeSolidServer/node-solid-server/wiki
Security 0 https://github.com/nodeSolidServer/node-solid-server/security
Insights https://github.com/nodeSolidServer/node-solid-server/pulse
Code https://github.com/nodeSolidServer/node-solid-server
Issues https://github.com/nodeSolidServer/node-solid-server/issues
Pull requests https://github.com/nodeSolidServer/node-solid-server/pulls
Actions https://github.com/nodeSolidServer/node-solid-server/actions
Projects https://github.com/nodeSolidServer/node-solid-server/projects
Wiki https://github.com/nodeSolidServer/node-solid-server/wiki
Security https://github.com/nodeSolidServer/node-solid-server/security
Insights https://github.com/nodeSolidServer/node-solid-server/pulse
Sign up for GitHub https://github.com/signup?return_to=%2FnodeSolidServer%2Fnode-solid-server%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2FnodeSolidServer%2Fnode-solid-server%2Fissues%2Fnew%2Fchoose
Jump to bottomhttps://github.com/nodeSolidServer/node-solid-server/pull/526#issue-comment-box
dmitrizagidulinhttps://github.com/dmitrizagidulin
dz_oidchttps://github.com/nodeSolidServer/node-solid-server/tree/dz_oidc
fix/no-cross-origin-cookiehttps://github.com/nodeSolidServer/node-solid-server/tree/fix/no-cross-origin-cookie
Reject cookies from third-party applications https://github.com/nodeSolidServer/node-solid-server/pull/526#top
dmitrizagidulinhttps://github.com/dmitrizagidulin
dz_oidchttps://github.com/nodeSolidServer/node-solid-server/tree/dz_oidc
fix/no-cross-origin-cookiehttps://github.com/nodeSolidServer/node-solid-server/tree/fix/no-cross-origin-cookie
Conversation 7 https://github.com/nodeSolidServer/node-solid-server/pull/526
Commits 1 https://github.com/nodeSolidServer/node-solid-server/pull/526/commits
Checks 0 https://github.com/nodeSolidServer/node-solid-server/pull/526/checks
Files changed https://github.com/nodeSolidServer/node-solid-server/pull/526/files
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.co/hiddenchars
https://github.com/nodeSolidServer/node-solid-server/pull/{{ revealButtonHref }}
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#issue-245513925
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
#524https://github.com/nodeSolidServer/node-solid-server/issues/524
linkeddata/warp#23https://github.com/linkeddata/warp/issues/23
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
bug https://github.com/nodeSolidServer/node-solid-server/issues?q=state%3Aopen%20label%3Abug
ready for review https://github.com/nodeSolidServer/node-solid-server/issues?q=state%3Aopen%20label%3A%22ready%20for%20review%22
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1178675315
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
dmitrizagidulinhttps://github.com/dmitrizagidulin
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1178675317
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
dan-fhttps://github.com/dan-f
dmitrizagidulinhttps://github.com/dmitrizagidulin
July 25, 2017 19:44https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1178675323
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jul 25, 2017 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-issue-245514203
Do not rely on cookie-based authentication linkeddata/warp#23 https://github.com/linkeddata/warp/issues/23
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
force-pushedhttps://github.com/nodeSolidServer/node-solid-server/compare/01f3671c5e1276b083ea1278f06d75c17c493ced..62a90441c0758d9bb2fc659284f8b83f40aaaf32
01f3671https://github.com/nodeSolidServer/node-solid-server/commit/01f3671c5e1276b083ea1278f06d75c17c493ced
62a9044https://github.com/nodeSolidServer/node-solid-server/commit/62a90441c0758d9bb2fc659284f8b83f40aaaf32
Compare https://github.com/nodeSolidServer/node-solid-server/compare/01f3671c5e1276b083ea1278f06d75c17c493ced..62a90441c0758d9bb2fc659284f8b83f40aaaf32
July 25, 2017 20:39https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1178763451
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#issuecomment-317865463
@dmitrizagidulinhttps://github.com/dmitrizagidulin
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/dmitrizagidulin
dmitrizagidulinhttps://github.com/dmitrizagidulin
Jul 25, 2017 https://github.com/nodeSolidServer/node-solid-server/pull/526#pullrequestreview-52191452
View reviewed changes https://github.com/nodeSolidServer/node-solid-server/pull/526/files
lib/create-app.jshttps://github.com/nodeSolidServer/node-solid-server/pull/526/files#diff-d6d70c6e05e18a96cdc13f865faa53b3609ad3f6980b8be0db32797e6046a09f
dmitrizagidulinhttps://github.com/dmitrizagidulin
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#discussion_r129420160
Learn morehttps://docs.github.com/articles/managing-disruptive-comments/#hiding-a-comment
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
dmitrizagidulinhttps://github.com/dmitrizagidulin
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#discussion_r129420481
Learn morehttps://docs.github.com/articles/managing-disruptive-comments/#hiding-a-comment
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/RubenVerborgh
Reject cookies from third-party applications.https://github.com/nodeSolidServer/node-solid-server/pull/526/commits/de38bf87d858320d828a5d3aced9b4906ed37e0d
de38bf8https://github.com/nodeSolidServer/node-solid-server/pull/526/commits/de38bf87d858320d828a5d3aced9b4906ed37e0d
#524https://github.com/nodeSolidServer/node-solid-server/issues/524
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
force-pushedhttps://github.com/nodeSolidServer/node-solid-server/compare/62a90441c0758d9bb2fc659284f8b83f40aaaf32..de38bf87d858320d828a5d3aced9b4906ed37e0d
62a9044https://github.com/nodeSolidServer/node-solid-server/commit/62a90441c0758d9bb2fc659284f8b83f40aaaf32
de38bf8https://github.com/nodeSolidServer/node-solid-server/commit/de38bf87d858320d828a5d3aced9b4906ed37e0d
Compare https://github.com/nodeSolidServer/node-solid-server/compare/62a90441c0758d9bb2fc659284f8b83f40aaaf32..de38bf87d858320d828a5d3aced9b4906ed37e0d
July 25, 2017 21:09https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1178812420
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#issuecomment-317873304
@dmitrizagidulinhttps://github.com/dmitrizagidulin
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/dmitrizagidulin
dmitrizagidulinhttps://github.com/dmitrizagidulin
Jul 25, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#issuecomment-317873948
@RubenVerborghhttps://github.com/RubenVerborgh
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/dmitrizagidulin
dmitrizagidulinhttps://github.com/dmitrizagidulin
f853711https://github.com/nodeSolidServer/node-solid-server/commit/f8537113ff955fcdcbfd28f540b05c487bcb1f7b
Jul 27, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1181977288
https://github.com/dmitrizagidulin
dmitrizagidulinhttps://github.com/dmitrizagidulin
July 27, 2017 15:21https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1181977571
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
4.0.0https://github.com/nodeSolidServer/node-solid-server/milestone/4
Aug 10, 2017https://github.com/nodeSolidServer/node-solid-server/pull/526#event-1201556705
RubenVerborghhttps://github.com/RubenVerborgh
Aug 10, 2017 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-commit-527109e
https://github.com/RubenVerborgh
Add CHANGELOG entry for cookie auth (https://github.com/nodeSolidServer/node-solid-server/commit/527109e39e22136ed231204d1a1d303e87efb358
#526https://github.com/nodeSolidServer/node-solid-server/pull/526
).https://github.com/nodeSolidServer/node-solid-server/commit/527109e39e22136ed231204d1a1d303e87efb358
527109ehttps://github.com/nodeSolidServer/node-solid-server/commit/527109e39e22136ed231204d1a1d303e87efb358
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Aug 11, 2017 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-issue-249728667
Fix or replace directory browser #537 https://github.com/nodeSolidServer/node-solid-server/issues/537
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Sep 1, 2017 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-issue-254486409
Main web page login does not set up state of solid-auth-client in-page login #568 https://github.com/nodeSolidServer/node-solid-server/issues/568
RubenVerborghhttps://github.com/RubenVerborgh
Sep 3, 2017 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-commit-d20bef8
https://github.com/RubenVerborgh
Add CHANGELOG entry for cookie auth (https://github.com/nodeSolidServer/node-solid-server/commit/d20bef82a3c768b25efa12b76aebfdce7fc885f7
#526https://github.com/nodeSolidServer/node-solid-server/pull/526
).https://github.com/nodeSolidServer/node-solid-server/commit/d20bef82a3c768b25efa12b76aebfdce7fc885f7
d20bef8https://github.com/nodeSolidServer/node-solid-server/commit/d20bef82a3c768b25efa12b76aebfdce7fc885f7
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jan 18, 2018 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-issue-289765682
Cross-Origin scripts can access data without restrictions linkeddata/gold#89 https://github.com/linkeddata/gold/issues/89
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jun 15, 2018 https://github.com/nodeSolidServer/node-solid-server/pull/526#ref-issue-332671599
Fix WebID+TLS login for cross-domain #710 https://github.com/nodeSolidServer/node-solid-server/issues/710
https://github.com/timbl
timblhttps://github.com/timbl
Jun 15, 2018https://github.com/nodeSolidServer/node-solid-server/pull/526#issuecomment-397621741
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/RubenVerborgh
RubenVerborghhttps://github.com/RubenVerborgh
Jun 15, 2018https://github.com/nodeSolidServer/node-solid-server/pull/526#issuecomment-397636565
@timblhttps://github.com/timbl
#524https://github.com/nodeSolidServer/node-solid-server/issues/524
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
Do not block third-party cookies from reaching auth handlers #793 https://github.com/nodeSolidServer/node-solid-server/pull/793
Allow cookies from all subdomains #834 https://github.com/nodeSolidServer/node-solid-server/pull/834
Sign up for freehttps://github.com/join?source=comment-repo
Sign in to commenthttps://github.com/login?return_to=https%3A%2F%2Fgithub.com%2FnodeSolidServer%2Fnode-solid-server%2Fpull%2F526
https://github.com/dan-f
dan-f https://github.com/dan-f
https://github.com/dmitrizagidulin
dmitrizagidulin https://github.com/dmitrizagidulin
https://github.com/nodeSolidServer/node-solid-server/pull/526/files/62a90441c0758d9bb2fc659284f8b83f40aaaf32
https://github.com/dmitrizagidulin
dmitrizagidulin https://github.com/dmitrizagidulin
bug https://github.com/nodeSolidServer/node-solid-server/issues?q=state%3Aopen%20label%3Abug
ready for review https://github.com/nodeSolidServer/node-solid-server/issues?q=state%3Aopen%20label%3A%22ready%20for%20review%22
4.0.0 https://github.com/nodeSolidServer/node-solid-server/milestone/4
Please reload this pagehttps://github.com/nodeSolidServer/node-solid-server/pull/526
https://github.com/RubenVerborgh
https://github.com/dmitrizagidulin
https://github.com/timbl
https://github.com/apps/copilot-swe-agent
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.