Hi,
Our recent implementation have undergone security and penetration testing and One of the low but important finding the security team have raised that " the application is missing or does not use consistently mechanisms such as SameSite cookie ...