#http-only #xss #security #cookie #dev