Hacker News new | ask | show | jobs
by viraptor 1931 days ago
> is foolish to rely on DNS to discern between first-party and third-party

Correct, because first-party / third-party is not a technical difference, but a social/commercial one. The app.example.com may run in a different cloud and be part of the same first-party service.