1
0
mirror of synced 2025-12-19 18:10:59 -05:00
Files
docs/lib/cookie-settings.js
Peter Bengtsson a39614fdcf remove supertest dependency (#28572)
* remove supertest dependency

* remove bad test
2022-06-16 15:56:41 +00:00

10 lines
350 B
JavaScript

export default {
httpOnly: true, // can't access these cookies through browser JavaScript
secure: !['test', 'development'].includes(process.env.NODE_ENV),
// requires https protocol
// http://localhost fails on chrome with secure
sameSite: 'lax',
// most browsers are "lax" these days,
// but older browsers used to default to "none"
}