Summary
When Google One Tap is implemented using Javascript API/HTML API including nonce, the returned JWT is missing nonce for Safari browser. Chrome and Fireforx returns the nonce as expected.
Using "itp_support" did not make any change on this.
This behaviour remains same for both Javascript API and HTML API.
When "Prevent cross-site tracking" is disabled at Safari, the nonce returns and works as expected. Since Safari has this default setting, we have to request customers to disable this option to enable Google One Tap. Any workaround available ?
Browser(s)/Version(s)
Safari Version 16.1 (18614.2.9.1.12)
Expected Behavior
Google One Tap should return nonce in JWT when it is included in initialiaze call.
Actual Behavior
Returned JWT is missing nonce even it is included at initialize
Steps to Reproduce
Please include steps and code samples to aid in issue reproduction(html/javascript).
Integrate Google One Tap using Javascript API/HTML API using a nonce.
Sign in via Google One Tap
Check retuned JWT
Hi Team,
Summary When Google One Tap is implemented using Javascript API/HTML API including nonce, the returned JWT is missing nonce for Safari browser. Chrome and Fireforx returns the nonce as expected.
Please refer the code used.
Using "itp_support" did not make any change on this.
This behaviour remains same for both Javascript API and HTML API.
When "Prevent cross-site tracking" is disabled at Safari, the nonce returns and works as expected. Since Safari has this default setting, we have to request customers to disable this option to enable Google One Tap. Any workaround available ?
Browser(s)/Version(s) Safari Version 16.1 (18614.2.9.1.12)
Expected Behavior Google One Tap should return nonce in JWT when it is included in initialiaze call.
Actual Behavior Returned JWT is missing nonce even it is included at initialize
Steps to Reproduce Please include steps and code samples to aid in issue reproduction(html/javascript).
Integrate Google One Tap using Javascript API/HTML API using a nonce. Sign in via Google One Tap Check retuned JWT