Repository navigation
Conversation
Add a shared note snippet describing that WebKit on iOS 27+ and macOS 27+ (Safari) blocks browser requests to uidapi.com, and the required actions (server-side token generation, or Prebid.js server-only mode). Import it on the JavaScript SDK guides, the Prebid.js client-side guide and the SDK reference. Add short one-line notes to the Prebid.js client-server guide (Client Refresh / Server-Only modes) and the publisher web options overview. Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com> Ticket: UID2-8061 Branch: syw-UID2-8061-ios27-webkit-docs-note
The shared snippet now holds only the impact description. Each guide adds its own required action: server-side integration for the JavaScript guides and SDK reference, and server-side or Prebid.js server-only mode for the Prebid.js client-side guide. Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com> Ticket: UID2-8061 Branch: syw-UID2-8061-ios27-webkit-docs-note
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com> Ticket: UID2-8061 Branch: syw-UID2-8061-ios27-webkit-docs-note
There was a problem hiding this comment.
🟡 Changes recommended
Several notices incorrectly imply that all SDK downloads fail, although NPM-bundled distribution remains available.
3 open findings
What changed in this PR
Documents WebKit’s uidapi.com restrictions on iOS 27 and macOS 27 across affected web integration guides.
Changes:
- Adds a shared impact notice.
- Provides integration-specific server-side guidance.
- Clarifies affected Prebid.js refresh modes.
| File | Description |
|---|---|
docs/snippets/_snpt-ios27-webkit-note.mdx |
Defines the shared WebKit notice. |
docs/sdks/sdk-ref-javascript.md |
Adds the notice to the SDK reference. |
docs/guides/integration-prebid-client-side.md |
Recommends server-side alternatives. |
docs/guides/integration-prebid-client-server.md |
Clarifies suitable refresh modes. |
docs/guides/integration-options-publisher-web.md |
Notes restrictions in the integration summary. |
docs/guides/integration-javascript-client-side.md |
Directs affected users server-side. |
docs/guides/integration-javascript-client-server.md |
Documents CDN and refresh impact. |
🧠 Review effort: Balanced
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com> Ticket: UID2-8061 Branch: syw-UID2-8061-ios27-webkit-docs-note
…ng from NPM installation' Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
…er loading from UID2 CDN' Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
…rowser-loading failure' Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com> Ticket: UID2-8061 Branch: syw-UID2-8061-ios27-webkit-docs-note
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com> Ticket: UID2-8061 Branch: syw-UID2-8061-ios27-webkit-docs-note
| :::note | ||
| <SnptIos27WebkitNote /> | ||
|
|
||
| **Required action:** On affected browsers, generate and refresh UID2 tokens on your server. See [Publisher integration guide, server-side](integration-publisher-server-side.md). |
There was a problem hiding this comment.
Action required: On affected browsers, generate and refresh UID2 tokens on your server. For details, see Publisher integration guide, server-side.
| :::note | ||
| <SnptIos27WebkitNote /> | ||
|
|
||
| **Required action:** This client-side integration is not supported in affected browsers. Use a server-side integration to generate and refresh UID2 tokens. See [Publisher integration guide, server-side](integration-publisher-server-side.md). |
There was a problem hiding this comment.
Action required: This client-side integration is no longer supported in affected browsers (any browser on iOS 27 or later, and Safari on macOS 27 or later). Use a server-side integration to generate and refresh UID2 tokens. For details, see Publisher integration guide, server-side.
| :::note | ||
| <SnptIos27WebkitNote /> | ||
|
|
||
| **Required action:** On affected browsers, use a server-side solution to generate and refresh UID2 tokens. See [Publisher integration guide, server-side](integration-publisher-server-side.md). |
There was a problem hiding this comment.
Action required: On affected browsers, use a server-side integration to generate and refresh UID2 tokens. For details, see Publisher integration guide, server-side.
| :::note | ||
| <SnptIos27WebkitNote /> | ||
|
|
||
| **Required action:** This client-side integration is not supported in affected browsers. Use either the [Publisher integration guide, server-side](integration-publisher-server-side.md) or the [Client-server integration guide for Prebid.js](integration-prebid-client-server.md) in [server-only mode](integration-prebid-client-server.md#server-only-mode). |
There was a problem hiding this comment.
Action required: This client-side integration is no longer supported in affected browsers. Use either the Publisher integration guide, server-side or the Client-server integration guide for Prebid.js in server-only mode.
|
|
||
| ### iOS 27 and macOS 27 web integration limitations |
There was a problem hiding this comment.
iOS 27 and macOS 27 web integration limitations
October 9, 2026
Starting with iOS 27 and macOS 27, WebKit blocks browser requests to uidapi.com. In any browser on iOS 27 or later, and in Safari on macOS 27 or later, the SDK for JavaScript can't load from the UID2 CDN, and tokens can't be generated or refreshed in the browser. This also affects the client-side and client-server refresh flows in Prebid.js.
We've added notes about this to the web integration guides, the Prebid.js guides, and the SDK for JavaScript reference. In affected browsers, use a server-side integration to generate and refresh UID2 tokens.
For details, see Publisher integration guide, server-side, Client-server integration guide for Prebid.js, and SDK for JavaScript reference guide.
| :::note | ||
| <SnptIos27WebkitNote /> | ||
|
|
||
| **Required action:** The SDK for JavaScript no longer works on these browsers. Use a server-side integration to generate and refresh tokens instead. See [Publisher integration guide, server-side](../guides/integration-publisher-server-side.md). |
There was a problem hiding this comment.
Action required: The SDK for JavaScript is no longer supported in affected browsers. Use a server-side integration to generate and refresh UID2 tokens instead. For details, see Publisher integration guide, server-side.

Starting with iOS 27 and macOS 27, WebKit blocks browser requests to
uidapi.com, which breaks browser-side token generation/refresh, the SDK for JavaScript download, and the Prebid.js client-side and client-server refresh flows. This adds a factual note on the pages where a publisher would hit the problem, with a required action specific to each guide.docs/snippets/_snpt-ios27-webkit-note.mdxdescribes the impact. It is imported inside a:::noteon the Client-Side and Client-Server Integration Guides for JavaScript, the Client-Side Integration Guide for Prebid.js, and the SDK for JavaScript Reference Guide. Each page adds its own Required action:overview-publishers, or the mobile guides (the native iOS SDK is not affected).npm run buildsucceeds with no broken links, and the notes render on all six pages.Jira: UID2-8061
🤖 Generated with Claude Code