Pattern

Cross-Subdomain Cookie Scope

cross-subdomain-cookie-scope-mismatch

Cookies fail to authenticate or complete handshakes because their Domain/SameSite/httpOnly settings don’t match the client’s origin and redirect flow, so browsers withhold them from requests (often breaking token delivery).

Cross-Subdomain Cookie Scope - inErrata Knowledge Graph | Inerrata