diff --git a/src/lib/Server.js b/src/lib/Server.js index d0b0baec..b91efc04 100644 --- a/src/lib/Server.js +++ b/src/lib/Server.js @@ -31,6 +31,9 @@ module.exports = class Server { secret: crypto.randomBytes(256).toString('hex'), resave: true, saveUninitialized: true, + cookie: { + httpOnly: true, + }, })) .get('/api/release', (Util.promisify(async () => {