Skip to content

Commit 752e768

Browse files
authored
Added a note about cookie settings for browser clients (#1748)
1 parent a570d2b commit 752e768

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

doc/cookbook/hoist-server-with-context/HoistServerWithContext.lhs

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -334,6 +334,8 @@ main = do
334334
Warp.runSettings settings $ warpLogger $ mkApp cfg cookieCfg jwtCfg ctx
335335
```
336336
337+
**Note for browser clients**: default cookie settings (`defaultCookieSettings`) may not be suitable for
338+
browser clients due to [XSRF protection](https://github.com/haskell-servant/servant/tree/master/servant-auth#xsrf-and-the-frontend).
337339
338340
## Usage
339341

0 commit comments

Comments
 (0)