Merge pull request #187 from snikket-im/cookie-samesite-attribute

Explicitly set cookie SameSite attribute to Lax
This commit is contained in:
Matthew Wild
2024-04-29 11:22:21 +01:00
committed by GitHub

View File

@@ -213,6 +213,7 @@ def create_app() -> quart.Quart:
app.config["ABUSE_EMAIL"] = config.abuse_email
app.config["SECURITY_EMAIL"] = config.security_email
app.config["SESSION_COOKIE_SECURE"] = True
app.config["SESSION_COOKIE_SAMESITE"] = "Lax"
app.context_processor(proc)
app.register_error_handler(