Skip to content

UID2-8061: Document iOS 27 / macOS 27 WebKit block of uidapi.com - #1082

Open
sunnywu wants to merge 9 commits into
mainfrom
syw-UID2-8061-ios27-webkit-docs-note
Open

sunnywu wants to merge 9 commits into
mainfrom
syw-UID2-8061-ios27-webkit-docs-note

Conversation

@sunnywu

@sunnywu sunnywu commented Oct 8, 2026 •

Copy link
Copy Markdown
Contributor

Starting with iOS 27 and macOS 27, WebKit blocks browser requests to uidapi.com, which breaks browser-side token generation/refresh, the SDK for JavaScript download, and the Prebid.js client-side and client-server refresh flows. This adds a factual note on the pages where a publisher would hit the problem, with a required action specific to each guide.

  • New shared snippet docs/snippets/_snpt-ios27-webkit-note.mdx describes the impact. It is imported inside a :::note on the Client-Side and Client-Server Integration Guides for JavaScript, the Client-Side Integration Guide for Prebid.js, and the SDK for JavaScript Reference Guide. Each page adds its own Required action:
    • JavaScript guides and SDK reference: the SDK no longer works on these browsers; use a server-side integration.
    • Prebid.js client-side: the integration no longer works; consider a server-side integration, or generate tokens on your server and use the Prebid.js client-server guide in server-only mode.
  • One-line notes on the Prebid.js Client-Server guide under "Client Refresh Mode" (refresh from the browser is affected) and "Server-Only Mode" (this is the fix), and under the "Integration Options Summary" table in the Publisher Web Integration Overview.
  • Intentionally not added to the homepage, overview-publishers, or the mobile guides (the native iOS SDK is not affected).

npm run build succeeds with no broken links, and the notes render on all six pages.

Jira: UID2-8061

🤖 Generated with Claude Code

Add a shared note snippet describing that WebKit on iOS 27+ and macOS 27+
(Safari) blocks browser requests to uidapi.com, and the required actions
(server-side token generation, or Prebid.js server-only mode). Import it on
the JavaScript SDK guides, the Prebid.js client-side guide and the SDK
reference. Add short one-line notes to the Prebid.js client-server guide
(Client Refresh / Server-Only modes) and the publisher web options overview.

Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>

Ticket: UID2-8061
Branch: syw-UID2-8061-ios27-webkit-docs-note
The shared snippet now holds only the impact description. Each guide adds its
own required action: server-side integration for the JavaScript guides and
SDK reference, and server-side or Prebid.js server-only mode for the Prebid.js
client-side guide.

Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>

Ticket: UID2-8061
Branch: syw-UID2-8061-ios27-webkit-docs-note
@sunnywu
sunnywu marked this pull request as ready for review October 9, 2026 05:11
@sunnywu
sunnywu requested review from sophia-chen-ttd and a balanced review from Copilot October 9, 2026 05:12
@sunnywu sunnywu self-assigned this Oct 9, 2026
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>

Ticket: UID2-8061
Branch: syw-UID2-8061-ios27-webkit-docs-note

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🟡 Changes recommended

Several notices incorrectly imply that all SDK downloads fail, although NPM-bundled distribution remains available.

3 open findings
What changed in this PR

Documents WebKit’s uidapi.com restrictions on iOS 27 and macOS 27 across affected web integration guides.

Changes:

  • Adds a shared impact notice.
  • Provides integration-specific server-side guidance.
  • Clarifies affected Prebid.js refresh modes.
File Description
docs/​snippets/​_snpt-ios27-webkit-note.mdx Defines the shared WebKit notice.
docs/​sdks/​sdk-ref-javascript.md Adds the notice to the SDK reference.
docs/​guides/​integration-prebid-client-side.md Recommends server-side alternatives.
docs/​guides/​integration-prebid-client-server.md Clarifies suitable refresh modes.
docs/​guides/​integration-options-publisher-web.md Notes restrictions in the integration summary.
docs/​guides/​integration-javascript-client-side.md Directs affected users server-side.
docs/​guides/​integration-javascript-client-server.md Documents CDN and refresh impact.

🧠 Review effort: Balanced


💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.

Comment thread docs/guides/integration-javascript-client-server.md Outdated
Comment thread docs/guides/integration-options-publisher-web.md Outdated
Comment thread docs/snippets/_snpt-ios27-webkit-note.mdx Outdated
sunnywu and others added 4 commits October 9, 2026 16:15
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>

Ticket: UID2-8061
Branch: syw-UID2-8061-ios27-webkit-docs-note
…ng from NPM installation'

Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
…er loading from UID2 CDN'

Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
…rowser-loading failure'

Co-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>
Comment thread docs/snippets/_snpt-ios27-webkit-note.mdx Outdated
Comment thread docs/sdks/sdk-ref-javascript.md
Comment thread docs/guides/integration-prebid-client-side.md Outdated
Comment thread docs/guides/integration-prebid-client-server.md
Comment thread docs/guides/integration-prebid-client-server.md
Comment thread docs/guides/integration-javascript-client-side.md Outdated
Comment thread docs/guides/integration-javascript-client-server.md
Comment thread docs/guides/integration-options-publisher-web.md
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>

Ticket: UID2-8061
Branch: syw-UID2-8061-ios27-webkit-docs-note
Co-Authored-By: Claude Sonnet 5.5 <noreply@anthropic.com>

Ticket: UID2-8061
Branch: syw-UID2-8061-ios27-webkit-docs-note

@kristinvc kristinvc left a comment

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Summited comments.

:::note
<SnptIos27WebkitNote />

**Required action:** On affected browsers, generate and refresh UID2 tokens on your server. See [Publisher integration guide, server-side](integration-publisher-server-side.md).

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Action required: On affected browsers, generate and refresh UID2 tokens on your server. For details, see Publisher integration guide, server-side.

:::note
<SnptIos27WebkitNote />

**Required action:** This client-side integration is not supported in affected browsers. Use a server-side integration to generate and refresh UID2 tokens. See [Publisher integration guide, server-side](integration-publisher-server-side.md).

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Action required: This client-side integration is no longer supported in affected browsers (any browser on iOS 27 or later, and Safari on macOS 27 or later). Use a server-side integration to generate and refresh UID2 tokens. For details, see Publisher integration guide, server-side.

:::note
<SnptIos27WebkitNote />

**Required action:** On affected browsers, use a server-side solution to generate and refresh UID2 tokens. See [Publisher integration guide, server-side](integration-publisher-server-side.md).

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Action required: On affected browsers, use a server-side integration to generate and refresh UID2 tokens. For details, see Publisher integration guide, server-side.

:::note
<SnptIos27WebkitNote />

**Required action:** This client-side integration is not supported in affected browsers. Use either the [Publisher integration guide, server-side](integration-publisher-server-side.md) or the [Client-server integration guide for Prebid.js](integration-prebid-client-server.md) in [server-only mode](integration-prebid-client-server.md#server-only-mode).

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Action required: This client-side integration is no longer supported in affected browsers. Use either the Publisher integration guide, server-side or the Client-server integration guide for Prebid.js in server-only mode.

Comment on lines +27 to +28

### iOS 27 and macOS 27 web integration limitations

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

iOS 27 and macOS 27 web integration limitations

October 9, 2026

Starting with iOS 27 and macOS 27, WebKit blocks browser requests to uidapi.com. In any browser on iOS 27 or later, and in Safari on macOS 27 or later, the SDK for JavaScript can't load from the UID2 CDN, and tokens can't be generated or refreshed in the browser. This also affects the client-side and client-server refresh flows in Prebid.js.

We've added notes about this to the web integration guides, the Prebid.js guides, and the SDK for JavaScript reference. In affected browsers, use a server-side integration to generate and refresh UID2 tokens.

For details, see Publisher integration guide, server-side, Client-server integration guide for Prebid.js, and SDK for JavaScript reference guide.

:::note
<SnptIos27WebkitNote />

**Required action:** The SDK for JavaScript no longer works on these browsers. Use a server-side integration to generate and refresh tokens instead. See [Publisher integration guide, server-side](../guides/integration-publisher-server-side.md).

@kristinvc kristinvc Oct 10, 2026 •

Copy link
Copy Markdown
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Action required: The SDK for JavaScript is no longer supported in affected browsers. Use a server-side integration to generate and refresh UID2 tokens instead. For details, see Publisher integration guide, server-side.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants