Skip to content
This repository has been archived by the owner on Jan 17, 2023. It is now read-only.

Commit

Permalink
Add SameSite to cookies #2187
Browse files Browse the repository at this point in the history
  • Loading branch information
cecilebertin committed Mar 28, 2017
1 parent c8e2282 commit 6fd75c3
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions server/src/server.js
Original file line number Diff line number Diff line change
Expand Up @@ -563,8 +563,8 @@ function sendAuthInfo(req, res, params) {
let encodedAbTests = b64EncodeJson(userAbTests);
let keygrip = dbschema.getKeygrip();
let cookies = new Cookies(req, res, {keys: keygrip});
cookies.set("user", deviceId, {signed: true});
cookies.set("abtests", encodedAbTests, {signed: true});
cookies.set("user", deviceId, {signed: true, sameSite: 'lax'});
cookies.set("abtests", encodedAbTests, {signed: true, sameSite: 'lax'});
let authHeader = `${deviceId}:${keygrip.sign(deviceId)};abTests=${encodedAbTests}:${keygrip.sign(encodedAbTests)}`;
let responseJson = {
ok: "User created",
Expand Down

0 comments on commit 6fd75c3

Please sign in to comment.