We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
lucia-auth
The sameSite attribute for cookies allows "lax" and "strict" but is missing "none".
sameSite
lucia/packages/lucia/src/auth/cookie.ts
Line 9 in 83960e2
https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Set-Cookie#samesitesamesite-value
Is there a reason for this?
I can create a PR to add it but wanted to check first.
The text was updated successfully, but these errors were encountered:
Third party cookies are being deprecated by browsers, so I don’t see a reason to support it
Sorry, something went wrong.
Ah gotcha, that makes sense.
Any suggestions on displaying authenticated content inside an iframe on a different domain securely?
Makes sense. Yeah if you could make a PR for it, I can merge it
SameSite=None
Successfully merging a pull request may close this issue.
Package
lucia-auth
Describe the bug
The
sameSite
attribute for cookies allows "lax" and "strict" but is missing "none".lucia/packages/lucia/src/auth/cookie.ts
Line 9 in 83960e2
https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Set-Cookie#samesitesamesite-value
Is there a reason for this?
I can create a PR to add it but wanted to check first.
The text was updated successfully, but these errors were encountered: