Secure cookies

If a participant uses cookies to store user preferences and/or session information, the parameters Secure and HttpOnly SHOULD be used.

For the cookie that is used to store AD selection by HM, refer to Single sign-on and user sessions.

