This repository has been archived on 2024-07-22. You can view files and clone it, but cannot push or open issues or pull requests.
mastodon/spec
Sorin Davidoi 6f3d934bc1 feat(cookies): Use the same-site attribute to lax (#8626)
CSFR-prevention is already implemented but adding this doesn't hurt.

A brief introduction to Same-Site cookies (and the difference between strict and
lax) can be found at
https://blog.mozilla.org/security/2018/04/24/same-site-cookies-in-firefox-60/

TLDR: We use lax since we want the cookies to be sent when the user navigates
safely from an external site.
2018-09-08 23:54:28 +02:00
..
controllers Make Api::V1::MutesController paginate properly (#8472) 2018-08-26 21:30:17 +02:00
fabricators Display pending message on admin relays UI (#8494) 2018-08-28 05:39:43 +02:00
features Add scenarios for log in (#3497) 2017-06-01 17:25:59 +02:00
fixtures Slightly reduce RAM usage (#7301) 2018-05-02 18:58:48 +02:00
helpers Add theme identifier to body classes for easier custom CSS styling (#8439) 2018-08-25 22:55:25 +02:00
lib Fix autoplay issue with spoiler tag (#8540) 2018-08-31 15:16:59 +02:00
mailers Account archive download (#6460) 2018-02-21 23:21:32 +01:00
models Fix nil host in remotable (#8508) 2018-08-29 21:13:49 +02:00
policies
presenters Isolate each specs for cache store (#6450) 2018-02-17 22:35:05 +01:00
requests Use raw status code on have_http_status (#7214) 2018-04-21 21:35:07 +02:00
routing Move create/destroy actions for api/v1/statuses to namespace (#3678) 2017-06-10 09:39:26 +02:00
services Add preference for report notification e-mails, skip for duplicates (#8559) 2018-09-02 00:11:58 +02:00
support Remove empty strings (#5732) 2017-11-17 10:52:30 +09:00
validators Add a spec for UniqueUsernameValidator (#6927) 2018-03-27 05:22:58 +02:00
views Add animate custom emoji param to embed pages (#8507) 2018-08-30 23:14:01 +02:00
workers Lists (#5703) 2017-11-18 00:16:48 +01:00
rails_helper.rb feat(cookies): Use the same-site attribute to lax (#8626) 2018-09-08 23:54:28 +02:00
spec_helper.rb Disable simplecov on CircleCI (#7416) 2018-05-09 16:59:58 +02:00