@@ -23,4 +23,5 @@ RPC_PORT=
WEB_COOKIE_KEY=
WEB_AUTH_URI=
HCAPTCHA_SITEKEY=
-HCAPTCHA_SECRET=
+HCAPTCHA_SECRET=
+WEB_DOMAIN=
@@ -41,6 +41,8 @@ const createSapperServer = async (): Promise<Express> => {
secureProxy: !dev,
name: "session",
secure: !dev,
+ httpOnly: !dev,
+ domain: ENV.WEB_DOMAIN,
}),
compression({ threshold: 0 }),
sirv("static", { dev }),
@@ -24,6 +24,7 @@ export const ENV = {
WEB_DATA_PATH: "",
HCAPTCHA_SITEKEY: "",
HCAPTCHA_SECRET: "",
+ WEB_DOMAIN: "",
};
function isValid(): boolean {