This repository was archived by the owner on Jun 9, 2026. It is now read-only.
0.12.12
Introducing Stateless HTTP Sessions
- HTTP sessions are no longer created automatically for every request.
- Routes without
webmiddleware remain stateless and do not receive session state, create storage records, or emit session cookies. - Applying
webmiddleware enables persistent sessions, flash data, validation errors, and view session state. - Explicit
Sessiondependency injection can also initialize a session when required. - Preserved validation redirect and flash behavior across Express and H3.
- Renamed
@arkstack/auth'sSessionclass toAuthSessionto distinguish it from the HTTP session implementation. - Added integration coverage proving stateless routes remain cookie-free.
Full Changelog: 0.12.8...0.12.12