]> cat aescling's git repositories - mastodon.git/commit
Make cookies https-only if LOCAL_HTTPS is true, set X-Frame-Options to DENY,
authorEugen Rochko <eugen@zeonfederated.com>
Wed, 2 Nov 2016 11:57:14 +0000 (12:57 +0100)
committerEugen Rochko <eugen@zeonfederated.com>
Wed, 2 Nov 2016 11:58:15 +0000 (12:58 +0100)
commit9467b900a27fd646952cbf37f7542765881dceac
treec124c4ffb50190d7e876d354f3e1ded8ca650d51
parent0a6b5e2c17be11c431d5b5b3d188db7e5021d914
Make cookies https-only if LOCAL_HTTPS is true, set X-Frame-Options to DENY,
add permissive CORS to API controllers
app/controllers/api_controller.rb
config/application.rb
config/initializers/session_store.rb