Jun 30, 2011

  1. José Valim

    Add has_key? and key? methods to CookieJar removed in 0ca69ca

    josevalim authored

May 23, 2011

  1. Jon Leighton

    Replace references to ActiveSupport::SecureRandom with just SecureRan…

    …dom, and require 'securerandom' from the stdlib when active support is required.

May 19, 2011

  1. Steven Bristol

    fixing sym and string cookie name, two cookies to browser bug.

Apr 06, 2011

  1. Aaron Patterson

    CookieJar should prefer composition over inheritance

    tenderlove authored
  2. Santiago Pastorino

    raise if someone tries to modify the cookies when it was already stre…

    …amed back to the client or converted to HTTP headers
    spastorino authored

Jan 21, 2011

  1. Ravil Bayramgalin

    Add tld_length option when using domain :all in cookies

    Signed-off-by: José Valim <>
    brainopia authored josevalim committed
  2. Ravil Bayramgalin

    Support list of possible domains for cookies

    Signed-off-by: José Valim <>
    brainopia authored josevalim committed

Dec 15, 2010

  1. Ravil Bayramgalin

    Fix edge cases for domain :all option on cookie store

    Dont set explicit domain for cookies if host is not a domain name
    [#6002 state:committed]
    Signed-off-by: Santiago Pastorino <>
    brainopia authored vijaydev committed

Nov 26, 2010

  1. Aditya Sanghi

    Resolving LH #5986, cookies doc updates

    asanghi authored

Oct 27, 2010

  1. Andrew White

    Ensure that Rails.env is defined first

    pixeltrix authored

Oct 25, 2010

  1. Andrew White

    Don't write out secure cookies unless the request is secure

    pixeltrix authored

Aug 27, 2010

  1. Joost Baaij

    expand cookie examples with signed and permanent methods

    tilsammans authored

Aug 15, 2010

  1. Bryce Thornton

    Allow for any possible TLD when using the :all option with the cookie…

    … session store. This works for subdomain.mysite.local,,, etc. [#5147 state:resolved]
    Signed-off-by: José Valim <>
    brycethornton authored josevalim committed

Jul 15, 2010

  1. Carlos Antonio da Silva

    Small fix in cookie docs and trailing whitespaces

Jun 11, 2010

  1. Rizwan Reza

    Refactored duplication into a separate method. Dropped class variable.

    rizwanreza authored josevalim committed
  2. Rizwan Reza

    Adding missing docs to delete cookies with :all which were added that…

    … way.
    rizwanreza authored josevalim committed
  3. Rizwan Reza

    Took out the domain option logic to cookies.rb.

    rizwanreza authored josevalim committed

May 18, 2010

  1. José Valim

    Avoid creating a Rack::Response object in the cookie middleware since…

    … it may stream the body.
    josevalim authored
  2. José Valim

    Simplify cookie_store by simply relying on cookies.signed.

    josevalim authored

Apr 05, 2010

  1. José Valim

    Rename config.cookie_secret to config.secret_token and pass it as con…

    …figuration in request.env. This is another step forward removing global configuration.
    josevalim authored

Apr 04, 2010

  1. Jeremy Kemper

    Fix signed cookies by explicitly passing config to the cookie jar

    jeremy authored

Mar 31, 2010

  1. José Valim

    Deprecate cookie_verifier_secret in favor of config.cookie_secret all…

    …owing signed cookies to work again.
    josevalim authored

Mar 18, 2010

  1. Deleting and setting a cookie in the same request was broken

    Made sure to remove a cookie from @deleted_cookies when set
    [#4211 state:committed]
    Signed-off-by: Jeremy Kemper <>
    Mathias Biilmann Christensen authored jeremy committed

Jan 18, 2010

  1. Joshua Peek

    Accessing nonexistant cookies through the signed jar should not raise an

    josh authored

Jan 16, 2010

  1. Joshua Peek

    Cookies middleware

    josh authored
