hedgedoc/public
David Mehren faa10da86b Set all cookies with sameSite: strict
Modern browsers do not support (or will stop supporting) sameSite: none (or no sameSite attribute) without the Secure flag. As we don't want everyone to be able to make requests with our cookies anyway, this commit sets sameSite to strict. See https://developer.mozilla.org/de/docs/Web/HTTP/Headers/Set-Cookie/SameSite

Signed-off-by: David Mehren <dmehren1@gmail.com>
2020-07-10 18:40:56 +08:00
..
css
docs Update all links with https 2020-04-26 21:59:08 +02:00
fonts
js Set all cookies with sameSite: strict 2020-07-10 18:40:56 +08:00
uploads
vendor
views Merge pull request #312 from PascalBru/feature_301 2020-03-26 00:26:12 +01:00
.eslintrc.js
apple-touch-icon.png
codimd-icon-1024.png
default.md
favicon.png
screenshot.png