diff --git a/web/src/lib/server/auth.ts b/web/src/lib/server/auth.ts index 236e83f..d2996a7 100644 --- a/web/src/lib/server/auth.ts +++ b/web/src/lib/server/auth.ts @@ -56,7 +56,8 @@ export async function attemptLogin( if (user.passwordHash === hash.hash.toString()) { const session = await db.session.create({ data: { userId: user.id } }); cookies.set('session', session.token, { - secure: process.env.NODE_ENV === 'development' ? false : true, + // secure: process.env.NODE_ENV === 'development' ? false : true, + secure: false, httpOnly: true, sameSite: 'strict', maxAge: sessionExpireSeconds