This version represents a working version that has been tested in the real world.
Known Issues
When large claims are returned by the SAML IdP the session cookie may be larger than the maximum allowed size of 4Kib, which will then be blocked by the browser.
This is an issue with the upstream and will require a custom implementation of the session codec to change how this works.