Checks

Partitioned without Secure

A cookie sets Partitioned without Secure.

Why it matters

Browsers ignore Partitioned unless Secure is also set, so the CHIPS restriction does not apply.

What to do

Add the Secure attribute.

Reference

Cookie attributes such as Secure, HttpOnly, and SameSite protect session tokens in browsers.

OWASP Session Management Cheat Sheet