1. What is a Cookie?

πŸ“Œ Example:

HTTP Response:
Set-Cookie: session=abc123; Path=/; Secure; HttpOnly; SameSite=Strict

Next Request:
Cookie: session=abc123


2. Important Cookie Attributes (Flags)

πŸ”Ή HttpOnly

βœ… Example:

Set-Cookie: session=abc123; HttpOnly

πŸ‘‰ Now JS can’t steal it using alert(document.cookie).


πŸ”Ή Secure

βœ… Example: