[Webkit-unassigned] [Bug 228856] New: Feature Request: Don't partition third party localStorage by subdomain

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Thu Aug 5 20:15:57 PDT 2021


https://bugs.webkit.org/show_bug.cgi?id=228856

            Bug ID: 228856
           Summary: Feature Request: Don't partition third party
                    localStorage by subdomain
           Product: WebKit
           Version: Safari 13
          Hardware: Unspecified
                OS: Unspecified
            Status: NEW
          Severity: Normal
          Priority: P2
         Component: WebKit Misc.
          Assignee: webkit-unassigned at lists.webkit.org
          Reporter: sarah.k.payne at gmail.com

Hi, 

I've run into an issue with WebKit deleting localStorage items set by a third party (hosted in an iFrame) when moving between two subdomains of a first party website. What is the benefit of partitioning between subdomains of the same first party?

I saw this was intentional here (https://webkit.org/tracking-prevention), however when reading the definition of a first party here (https://webkit.org/tracking-prevention-policy) it clearly states that subdomains are party of the same first party, 

" In practice, we consider resources to belong to the same party if they are part of the same registrable domain: a public suffix plus one additional label. Example: site.example, www.site.example, and s.u.b.site.example are all the same party since site.example is their shared registrable domain.
"

Thank you,

Sarah

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.webkit.org/pipermail/webkit-unassigned/attachments/20210806/866c8b47/attachment-0001.htm>


More information about the webkit-unassigned mailing list