Open aarona opened 2 years ago
Just as the title of this issue states, it would be nice to have SameSite=strict added to the refresh token (access token as well?) for an extra layer of protection against cross origin cookie sharing.
SameSite=strict
Just as the title of this issue states, it would be nice to have
SameSite=strict
added to the refresh token (access token as well?) for an extra layer of protection against cross origin cookie sharing.