From b41d78a34bb66e0d84247594b24b9c7b2f776edc Mon Sep 17 00:00:00 2001 From: David Wen Date: Wed, 9 Nov 2022 12:13:29 -1000 Subject: [PATCH] Set SameSite=None on login cookie Attempt to share cookie between Hitchhikers and Storm --- api/token.go | 1 + 1 file changed, 1 insertion(+) diff --git a/api/token.go b/api/token.go index 03a8f3406..eaa1c4aec 100644 --- a/api/token.go +++ b/api/token.go @@ -218,6 +218,7 @@ func (a *API) setCookieToken(config *conf.Configuration, tokenString string, ses HttpOnly: true, Path: "/", Domain: ".yext.com", + SameSite: http.SameSiteNoneMode, } if !session { cookie.Expires = time.Now().Add(exp)