New rev includes * `memorable_forget` and `site-notification`. * Conditionally setting secure value based on the `session.secure` val
--- ** [tickets:#8362] Fix cookie lacking secure attribute** **Status:** open **Milestone:** unreleased **Created:** Fri May 29, 2020 02:52 PM UTC by Kenton Taylor **Last Updated:** Fri May 29, 2020 07:21 PM UTC **Owner:** Kenton Taylor `Cookie “_session_id” will be soon rejected because it has the “sameSite” attribute set to “none” or an invalid value, without the “secure” attribute. To know more about the “sameSite“ attribute, read https://developer.mozilla.org/docs/Web/HTTP/Cookies` --- Sent from forge-allura.apache.org because dev@allura.apache.org is subscribed to https://forge-allura.apache.org/p/allura/tickets/ To unsubscribe from further messages, a project admin can change settings at https://forge-allura.apache.org/p/allura/admin/tickets/options. Or, if this is a mailing list, you can unsubscribe from the mailing list.