If I read it right, the UBB cookie scope does not matter for this hack.
You say that you don't touch the UBB cookies, could this mean that a user logins with your hack and then finds that although YOUR cookies are set, the UBB ones are blank (for whatever reason) and they have to enter their Username/password again (when posting for example)?
It would be nice for this hack to achieve SINGLE-SIGNON if at all possible so the user only has to enter their details once per session and all cookies are set up.
I just think that the user will wonder why he/she has to enter information for UBB purposes when they have already provided it for login.cgi purposes.
I like where this hack is going though, especially if the above concern is solved.
Good documentation - makes a change to see a hack well written up.