chore: Use httpOnly authentication cookie (#5552)

This commit is contained in:
Tom Moor
2023-07-15 16:56:32 -04:00
committed by GitHub
parent b1230d0c81
commit 39e12cef65
16 changed files with 114 additions and 120 deletions

View File

@@ -32,7 +32,6 @@ router.get("/redirect", auth(), async (ctx: APIContext) => {
await user.updateActiveAt(ctx, true);
ctx.cookies.set("accessToken", jwtToken, {
httpOnly: false,
sameSite: "lax",
expires: addMonths(new Date(), 3),
});