HTTP

Learning Path

Ship Secure Auth and Cookies

A security-focused path for login state, browser credentials, and defensive HTTP defaults.

Built for: Engineers building web auth, session handling, and browser-facing APIs.

What you should get from this path

Read the foundational guides

These explain the threat model before you choose implementation details.

Use the right references

Keep the policy-setting headers and cookie attributes close at hand.

Compare and validate your choices

These pages help you decide, then test the resulting configuration.

More Learning Paths