From 4656a07e9e394f451ea48646901ae61c7f0c9f86 Mon Sep 17 00:00:00 2001
From: shibayashi <shibayashi@cypherpunk.observer>
Date: Tue, 28 Aug 2018 14:03:29 +0200
Subject: [PATCH] Set SameSite flag to 'Strict'

---
 lib/pleroma/web/endpoint.ex | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/lib/pleroma/web/endpoint.ex b/lib/pleroma/web/endpoint.ex
index 7bbb9480d..17f6b9bb6 100644
--- a/lib/pleroma/web/endpoint.ex
+++ b/lib/pleroma/web/endpoint.ex
@@ -52,7 +52,7 @@ defmodule Pleroma.Web.Endpoint do
     signing_salt: "CqaoopA2",
     secure:
       Application.get_env(:pleroma, Pleroma.Web.Endpoint) |> Keyword.get(:secure_cookie_flag),
-    extra: "SameSite=Lax"
+    extra: "SameSite=Strict"
   )
 
   plug(Pleroma.Web.Router)