<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.west-first-party-cookies" target="https://datatracker.ietf.org/doc/html/draft-west-first-party-cookies-07">
   <front>
      <title>Same-site Cookies</title>
      <author initials="M." surname="West" fullname="Mike West">
         <organization>Google, Inc</organization>
      </author>
      <author initials="M." surname="Goodwin" fullname="Mark Goodwin">
         <organization>Mozilla</organization>
      </author>
      <date month="April" day="6" year="2016" />
      <abstract>
	 <t>   This document updates RFC6265 by defining a &quot;SameSite&quot; attribute
   which allows servers to assert that a cookie ought not to be sent
   along with cross-site requests.  This assertion allows user agents to
   mitigate the risk of cross-origin information leakage, and provides
   some protection against cross-site request forgery attacks.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-west-first-party-cookies-07" />
   
</reference>
