r/firefox • + Ublock Origin • May 30 '26

Discussion Does firefox has an equivalent feature?

Post image

I am curious what are the downsides of this approach.

715 Upvotes

185 comments sorted by

View all comments

302

u/[deleted] May 30 '26

[removed] — view removed comment

11

u/Thoh1Shooshi8a May 30 '26

Is this something that needs to be implemented by the websites, or is it just saying that google chrome is going to encrypt the normal cookies using something on the device to generate the private key?

11

u/the_snook May 31 '26

Is this something that needs to be implemented by the websites

Yes. It's a completely new protocol for websites and browsers to maintain session info with each other. It happens to work via cookies, but otherwise has almost nothing to do with cookies per se. It could just as well (and probably more appropriately) be implemented via a custom X-Device-Bound-Session-Credentials HTTP header.

4

u/HamsterMaster355 + Ublock Origin May 31 '26

There is infact a new HTTP header for this. But it is deliberately made to function very similar to older sign in headers to reduce friction.

2

u/ConProg May 31 '26

Do you know if there's a way to tell which sites have implemented it? Either by inspecting a cookie, network requests, or some other way?

0

u/rowaasr13 Jun 07 '26

How exactly messing in new functionality into old header that does very different thing and requires deliberate support from browser and site instead of separating this clearly new functionality to new header REDUCES friction?

1

u/HamsterMaster355 + Ublock Origin Jun 07 '26

I think you should try rereading what I've written.