Add httponly to session cookie.

master
voussoir 2020-09-09 19:19:35 -07:00
parent 2ba4a3bb91
commit cb881ed640
1 changed files with 1 additions and 0 deletions

View File

@ -93,6 +93,7 @@ class SessionManager:
'etiquette_session', 'etiquette_session',
value=session.token, value=session.token,
max_age=SESSION_MAX_AGE, max_age=SESSION_MAX_AGE,
httponly=True,
) )
return response return response