From 7d7b291ea232b35b3842bb17ffe1d267107ae9c3 Mon Sep 17 00:00:00 2001 From: Peter Maquiran Date: Tue, 21 Apr 2026 21:06:07 +0100 Subject: [PATCH] samesite --- app/api/auth/callback/route.ts | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/api/auth/callback/route.ts b/app/api/auth/callback/route.ts index bee5e84..7929cc2 100644 --- a/app/api/auth/callback/route.ts +++ b/app/api/auth/callback/route.ts @@ -49,7 +49,7 @@ export async function GET(req: Request) { res.cookies.set("access_token", data.access_token, { httpOnly: true, secure: isHttps, - sameSite: "none", + sameSite: isHttps ? "none" : "lax", path: "/", ...(env.COOKIE_DOMAIN ? { domain: env.COOKIE_DOMAIN } : {}), maxAge: data.expires_in,