@korve-dev/app-auth and use an explicit browser or server entrypoint.
Secure, HttpOnly, SameSite=Lax
__Host- cookies with no Domain attribute, and apply CSRF protection to writes.
Add project-scoped sign-in and sessions to applications deployed on Korve.
@korve-dev/app-auth and use an explicit browser or server entrypoint.
Secure, HttpOnly, SameSite=Lax
__Host- cookies with no Domain attribute, and apply CSRF protection to writes.