Tor browser removes third-party cookies
|Reported by:||justuser||Owned by:||tbb-team|
|Cc:||gk, jamesbroadhead||Actual Points:|
I couldn't use epayments.com from tor-browser.
api.epayments.com send Access-Control-Allow-Origin: https://my.epayments.com allowing my.epayments.com to make cross domain request.
But tor browser removes this header, breaking authorization process. I googled and found that this is for better privacy, but could you make this feature disableable?
Change History (7)
comment:3 Changed 12 months ago by jamesbroadhead
- Priority changed from Medium to High
- Severity set to Normal
comment:6 Changed 3 months ago by cypherpunks
- Summary changed from Tor browser removes Authorization header to Tor browser removes third-party cookies