[ad_1]
Hi there,
I have a question about the cookie shield-notbot-nonce.
My understanding from the information provided at Policy Addendum For Plugin: Shield Security | Fernleaf Systems Limited, this cookie is not a session cookie. Not setting the HttpOnly attribute for this cookie does not pose a risk, as in XSS or session hijacking, right?
Is my understanding correct?
Thank you.
