-
Notifications
You must be signed in to change notification settings - Fork 6
Allow cookies in token_source_priority #75
Copy link
Copy link
Open
Labels
breaking-changeChanges public behaviour or API; needs a minor/major releaseChanges public behaviour or API; needs a minor/major releaseenhancementNew feature or requestNew feature or requestsessionSession management subsystemSession management subsystem
Milestone
Description
Activity
Metadata
Metadata
Assignees
Labels
breaking-changeChanges public behaviour or API; needs a minor/major releaseChanges public behaviour or API; needs a minor/major releaseenhancementNew feature or requestNew feature or requestsessionSession management subsystemSession management subsystem
SessionConfig.token_source_priorityaccepts only"header"and"bearer". Cookie transport is read solely byFastAPICacheXSessionMiddleware, and the response side is a binary decision driven by where the token came from.Folding cookies into the same priority list today would let
["cookie"]fail silently on the deprecatedSessionMiddleware, which has no cookie support. Once #69 removes that class, one priority list can describe all three sources. Seedocs/SESSION.md.Proposal
Literal["header", "bearer", "cookie"].Blocked by: #69