cookie-setSecure
setSecure
not set to true. This ensures that the cookie is sent only over HTTPS to prevent cross-site scripting attacks.cookie-issecure-false
setSecure
not set to true. This ensures that the cookie is sent only over HTTPS to prevent cross-site scripting attacks.