We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent dfe2600 commit 5be688eCopy full SHA for 5be688e
1 file changed
src/endpoint/play/session/mod.rs
@@ -22,8 +22,9 @@ use serde::Deserialize;
22
pub async fn get(jar: CookieJar, session: Option<Extension<SessionToken>>) -> impl IntoResponse {
23
fn setup_cookie(session: String) -> Cookie<'static> {
24
let mut cookie = Cookie::new(cookies::SESSION_TOKEN, session);
25
+ cookie.set_http_only(true);
26
cookie.set_same_site(SameSite::None);
- cookie.set_secure(false);
27
+ cookie.set_secure(true);
28
cookie
29
}
30
0 commit comments