Now you've made me curious. Claim 1 of the one-click patent:
A method of placing an order for an item comprising:
under control of a client system,
displaying information identifying the item; and
in response to only a single action being
performed, sending a request to order the item
along with an identifier of a purchaser of the
item to a server system;
under control of a single-action ordering component
of the server system,
receiving the request;
retrieving additional information previously
stored for the purchaser identified by the
identifier in the received request; and
generating an order to purchase the requested
item for the purchaser identified by the
identifier in the received request using the
retrieved additional information; and
fulfilling the generated order to complete purchase
of the item
whereby the item is ordered without using a shopping
cart ordering model.
IANA Patent Lawyer, but one obvious way to provide "one-click" functionality while evading this patent would be to have all the information required to generate an order POSTed in response to the mouse-click instead of storing customer data on the server.
I suspect that sending a login session cookie instead of a user-id cookie would also be ruled to be non-infringing -- after all, the patent specifies "an identifier of a purchaser", not "an identifier which can in combination with previously stored information be used to identify a purchaser".
If I wanted to think about this for more than five minutes I could come up with other solutions, but I'm not a patent lawyer and don't want to spend too much time twisting my brain around patent law.