chore: Use httpOnly authentication cookie (#5552)

This commit is contained in:
Tom Moor
2023-07-15 16:56:32 -04:00
committed by GitHub
parent b1230d0c81
commit 39e12cef65
16 changed files with 114 additions and 120 deletions

View File

@@ -19,7 +19,7 @@ export default class AuthenticationExtension implements Extension {
throw AuthenticationError("Authentication required");
}
const user = await getUserForJWT(token);
const user = await getUserForJWT(token, ["session", "collaboration"]);
if (user.isSuspended) {
throw AuthenticationError("Account suspended");