The problem with your question is that secure autologin is an oxymoron.
Anytime you make something automatic, you make the system less secure.
How automatic do you want the autologin to be? When the user visits the web site, they simply get logged in? What if someone else is using their computer?
Security is inconvenient.