fix: sameSite=none for cross-origin cookie (pingql.com → api.pingql.com)
This commit is contained in:
parent
5a0cf5033b
commit
1a7bc4dfa5
|
|
@ -78,7 +78,7 @@ export function requireAuth(app: Elysia) {
|
|||
const COOKIE_OPTS = {
|
||||
httpOnly: true,
|
||||
secure: process.env.COOKIE_SECURE !== "false",
|
||||
sameSite: "lax" as const,
|
||||
sameSite: "none" as const,
|
||||
path: "/",
|
||||
domain: process.env.COOKIE_DOMAIN ?? ".pingql.com",
|
||||
maxAge: 60 * 60 * 24 * 30, // 30 days
|
||||
|
|
|
|||
|
|
@ -78,7 +78,7 @@ export function requireAuth(app: Elysia) {
|
|||
const COOKIE_OPTS = {
|
||||
httpOnly: true,
|
||||
secure: process.env.COOKIE_SECURE !== "false",
|
||||
sameSite: "lax" as const,
|
||||
sameSite: "none" as const,
|
||||
path: "/",
|
||||
domain: process.env.COOKIE_DOMAIN ?? ".pingql.com",
|
||||
maxAge: 60 * 60 * 24 * 30, // 30 days
|
||||
|
|
|
|||
Loading…
Reference in New Issue