]> git.openstreetmap.org Git - rails.git/log
rails.git
15 months agoUse spacer for margins on leaflet popups
Andy Allan [Thu, 7 Sep 2023 09:26:50 +0000 (10:26 +0100)]
Use spacer for margins on leaflet popups

15 months agoUse an inline list for the login auth buttons
Andy Allan [Wed, 6 Sep 2023 17:35:12 +0000 (18:35 +0100)]
Use an inline list for the login auth buttons

15 months agoUse multiplication for secondary-actions margin and padding
Andy Allan [Wed, 6 Sep 2023 17:23:22 +0000 (18:23 +0100)]
Use multiplication for secondary-actions margin and padding

This avoids using the sass division operator, which is deprecated.

15 months agoRemove unnecessary paragraph margin override on diary comments
Andy Allan [Wed, 6 Sep 2023 17:22:58 +0000 (18:22 +0100)]
Remove unnecessary paragraph margin override on diary comments

15 months agoUpdate bundle
Tom Hughes [Tue, 12 Sep 2023 17:12:06 +0000 (18:12 +0100)]
Update bundle

15 months agoLocalisation updates from https://translatewiki.net.
translatewiki.net [Mon, 11 Sep 2023 11:18:30 +0000 (13:18 +0200)]
Localisation updates from https://translatewiki.net.

15 months agoMerge remote-tracking branch 'upstream/pull/4239'
Tom Hughes [Sun, 10 Sep 2023 17:47:07 +0000 (18:47 +0100)]
Merge remote-tracking branch 'upstream/pull/4239'

15 months agoMerge remote-tracking branch 'upstream/pull/4245'
Tom Hughes [Sun, 10 Sep 2023 16:24:16 +0000 (17:24 +0100)]
Merge remote-tracking branch 'upstream/pull/4245'

15 months agoMerge remote-tracking branch 'upstream/pull/4243'
Tom Hughes [Sun, 10 Sep 2023 16:23:24 +0000 (17:23 +0100)]
Merge remote-tracking branch 'upstream/pull/4243'

15 months agoMerge remote-tracking branch 'upstream/pull/4242'
Tom Hughes [Sun, 10 Sep 2023 16:22:21 +0000 (17:22 +0100)]
Merge remote-tracking branch 'upstream/pull/4242'

15 months agoUpdate to rails 7.0.8
Tom Hughes [Sun, 10 Sep 2023 16:11:17 +0000 (17:11 +0100)]
Update to rails 7.0.8

15 months agoAdd comment ids to changeset discussion api responses
Anton Khorev [Sun, 10 Sep 2023 14:10:31 +0000 (17:10 +0300)]
Add comment ids to changeset discussion api responses

15 months agoRemove authorize_web call from traces api controller
Anton Khorev [Sat, 9 Sep 2023 16:40:28 +0000 (19:40 +0300)]
Remove authorize_web call from traces api controller

15 months agoCombine comments and traces pagination partials
Anton Khorev [Mon, 4 Sep 2023 13:25:35 +0000 (16:25 +0300)]
Combine comments and traces pagination partials

15 months agoDon't interpolate in pagination partial
Anton Khorev [Mon, 4 Sep 2023 12:41:09 +0000 (15:41 +0300)]
Don't interpolate in pagination partial

15 months agoMake pagination partial view
Anton Khorev [Mon, 4 Sep 2023 12:07:54 +0000 (15:07 +0300)]
Make pagination partial view

15 months agoRefactor diary paging queries
Anton Khorev [Mon, 4 Sep 2023 11:13:43 +0000 (14:13 +0300)]
Refactor diary paging queries

15 months agoChange diary comments pagination to before/after id
Anton Khorev [Mon, 4 Sep 2023 10:12:25 +0000 (13:12 +0300)]
Change diary comments pagination to before/after id

15 months agoBump eslint from 8.48.0 to 8.49.0
dependabot[bot] [Fri, 8 Sep 2023 23:16:24 +0000 (23:16 +0000)]
Bump eslint from 8.48.0 to 8.49.0

Bumps [eslint](https://github.com/eslint/eslint) from 8.48.0 to 8.49.0.
- [Release notes](https://github.com/eslint/eslint/releases)
- [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md)
- [Commits](https://github.com/eslint/eslint/compare/v8.48.0...v8.49.0)

---
updated-dependencies:
- dependency-name: eslint
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
15 months agoMerge remote-tracking branch 'upstream/pull/4241'
Tom Hughes [Fri, 8 Sep 2023 17:09:00 +0000 (18:09 +0100)]
Merge remote-tracking branch 'upstream/pull/4241'

15 months agoMerge remote-tracking branch 'upstream/pull/4236'
Tom Hughes [Fri, 8 Sep 2023 16:55:54 +0000 (17:55 +0100)]
Merge remote-tracking branch 'upstream/pull/4236'

15 months agoMerge remote-tracking branch 'upstream/pull/4237'
Tom Hughes [Fri, 8 Sep 2023 16:53:42 +0000 (17:53 +0100)]
Merge remote-tracking branch 'upstream/pull/4237'

15 months agoAdd user id to api trace output
Anton Khorev [Fri, 8 Sep 2023 14:13:57 +0000 (17:13 +0300)]
Add user id to api trace output

15 months agoBump coverallsapp/github-action from 2.2.2 to 2.2.3
dependabot[bot] [Thu, 7 Sep 2023 23:46:21 +0000 (23:46 +0000)]
Bump coverallsapp/github-action from 2.2.2 to 2.2.3

Bumps [coverallsapp/github-action](https://github.com/coverallsapp/github-action) from 2.2.2 to 2.2.3.
- [Release notes](https://github.com/coverallsapp/github-action/releases)
- [Commits](https://github.com/coverallsapp/github-action/compare/v2.2.2...v2.2.3)

---
updated-dependencies:
- dependency-name: coverallsapp/github-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
15 months agoFix alignment in profile and diary location forms
Anton Khorev [Thu, 7 Sep 2023 14:20:43 +0000 (17:20 +0300)]
Fix alignment in profile and diary location forms

15 months agoLocalisation updates from https://translatewiki.net.
translatewiki.net [Thu, 7 Sep 2023 11:26:57 +0000 (13:26 +0200)]
Localisation updates from https://translatewiki.net.

15 months agoHandle timeouts inside a view for API calls
Tom Hughes [Wed, 6 Sep 2023 23:32:11 +0000 (00:32 +0100)]
Handle timeouts inside a view for API calls

15 months agoMerge remote-tracking branch 'upstream/pull/4225'
Tom Hughes [Wed, 6 Sep 2023 17:42:29 +0000 (18:42 +0100)]
Merge remote-tracking branch 'upstream/pull/4225'

15 months agoMerge remote-tracking branch 'upstream/pull/4234'
Tom Hughes [Wed, 6 Sep 2023 17:36:28 +0000 (18:36 +0100)]
Merge remote-tracking branch 'upstream/pull/4234'

15 months agoMerge remote-tracking branch 'upstream/pull/4233'
Tom Hughes [Wed, 6 Sep 2023 17:36:25 +0000 (18:36 +0100)]
Merge remote-tracking branch 'upstream/pull/4233'

15 months agoMatch the top spacing of the leaflet buttons to the gap between groups
Andy Allan [Wed, 6 Sep 2023 15:32:43 +0000 (16:32 +0100)]
Match the top spacing of the leaflet buttons to the gap between groups

This removes a usage of sass division operator

15 months agoUse h2 as the main header on the map-ui panel
Andy Allan [Wed, 6 Sep 2023 15:32:04 +0000 (16:32 +0100)]
Use h2 as the main header on the map-ui panel

15 months agoUse standard padding size for map-ui sidebar
Andy Allan [Wed, 6 Sep 2023 15:29:47 +0000 (16:29 +0100)]
Use standard padding size for map-ui sidebar

The previous padding didn't match the main sidebar, and also used
sass division as part of the calculation.

15 months agoRound the clickable map previews on the layer switcher
Andy Allan [Wed, 6 Sep 2023 15:26:12 +0000 (16:26 +0100)]
Round the clickable map previews on the layer switcher

Most interactive elements on the site are rounded, so we can do the
same for these map previews.

15 months agoMake the sharing controls read-only
Andy Allan [Wed, 6 Sep 2023 14:59:23 +0000 (15:59 +0100)]
Make the sharing controls read-only

They aren't used for inputting any information, only for copying.

15 months agoUse bootstrap form controls for the link and html controls
Andy Allan [Wed, 6 Sep 2023 14:55:16 +0000 (15:55 +0100)]
Use bootstrap form controls for the link and html controls

15 months agoUse bootstrap for share forms
Andy Allan [Wed, 6 Sep 2023 14:31:49 +0000 (15:31 +0100)]
Use bootstrap for share forms

This fixes alignment of the checkboxes, and uses bootstrap form
controls for the image format and scale inputs.

Move the custom dimensions input to beside the custom dimensions
display.

15 months agoMute hidden comment text in each table cell
Anton Khorev [Tue, 5 Sep 2023 08:50:58 +0000 (11:50 +0300)]
Mute hidden comment text in each table cell

15 months agoFix lack of margin on changeset browsing messages
Andy Allan [Wed, 6 Sep 2023 15:43:20 +0000 (16:43 +0100)]
Fix lack of margin on changeset browsing messages

The display area here uses negative margins to make the flush list
work, so we need to add them back in for normal text.

15 months agoMerge remote-tracking branch 'upstream/pull/4232'
Tom Hughes [Wed, 6 Sep 2023 09:43:43 +0000 (10:43 +0100)]
Merge remote-tracking branch 'upstream/pull/4232'

15 months agoUse implicit style for associations with factory overrides
Andy Allan [Wed, 6 Sep 2023 09:20:23 +0000 (10:20 +0100)]
Use implicit style for associations with factory overrides

This matches our usage of implicit style for associations generally,
e.g. `user`.

15 months agoMerge remote-tracking branch 'upstream/pull/4230'
Tom Hughes [Tue, 5 Sep 2023 16:30:03 +0000 (17:30 +0100)]
Merge remote-tracking branch 'upstream/pull/4230'

15 months agoMerge remote-tracking branch 'upstream/pull/4231'
Tom Hughes [Tue, 5 Sep 2023 16:22:04 +0000 (17:22 +0100)]
Merge remote-tracking branch 'upstream/pull/4231'

15 months agoUpdate argon2 tests for change in library default costs
Tom Hughes [Tue, 5 Sep 2023 16:16:53 +0000 (17:16 +0100)]
Update argon2 tests for change in library default costs

15 months agoUpdate bundle
Tom Hughes [Tue, 5 Sep 2023 15:54:41 +0000 (16:54 +0100)]
Update bundle

15 months agoShow user id on profile pages to moderators and admins
Anton Khorev [Tue, 5 Sep 2023 10:35:08 +0000 (13:35 +0300)]
Show user id on profile pages to moderators and admins

15 months agoMute hidden comment text in each table cell
Anton Khorev [Tue, 5 Sep 2023 08:50:58 +0000 (11:50 +0300)]
Mute hidden comment text in each table cell

15 months agoMerge remote-tracking branch 'upstream/pull/4229'
Tom Hughes [Tue, 5 Sep 2023 07:26:06 +0000 (08:26 +0100)]
Merge remote-tracking branch 'upstream/pull/4229'

15 months agoMerge remote-tracking branch 'upstream/pull/4228'
Tom Hughes [Tue, 5 Sep 2023 07:26:02 +0000 (08:26 +0100)]
Merge remote-tracking branch 'upstream/pull/4228'

15 months agoBump coverallsapp/github-action from 2.2.1 to 2.2.2
dependabot[bot] [Mon, 4 Sep 2023 23:17:23 +0000 (23:17 +0000)]
Bump coverallsapp/github-action from 2.2.1 to 2.2.2

Bumps [coverallsapp/github-action](https://github.com/coverallsapp/github-action) from 2.2.1 to 2.2.2.
- [Release notes](https://github.com/coverallsapp/github-action/releases)
- [Commits](https://github.com/coverallsapp/github-action/compare/v2.2.1...v2.2.2)

---
updated-dependencies:
- dependency-name: coverallsapp/github-action
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
15 months agoBump actions/checkout from 3 to 4
dependabot[bot] [Mon, 4 Sep 2023 23:17:21 +0000 (23:17 +0000)]
Bump actions/checkout from 3 to 4

Bumps [actions/checkout](https://github.com/actions/checkout) from 3 to 4.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](https://github.com/actions/checkout/compare/v3...v4)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
15 months agoSwap older/newer diary entries buttons
Anton Khorev [Mon, 4 Sep 2023 13:32:54 +0000 (16:32 +0300)]
Swap older/newer diary entries buttons

15 months agoLocalisation updates from https://translatewiki.net.
translatewiki.net [Mon, 4 Sep 2023 11:19:10 +0000 (13:19 +0200)]
Localisation updates from https://translatewiki.net.

15 months agoMerge remote-tracking branch 'upstream/pull/4223'
Tom Hughes [Sun, 3 Sep 2023 17:55:39 +0000 (18:55 +0100)]
Merge remote-tracking branch 'upstream/pull/4223'

15 months agoMerge remote-tracking branch 'upstream/pull/4222'
Tom Hughes [Sun, 3 Sep 2023 17:54:18 +0000 (18:54 +0100)]
Merge remote-tracking branch 'upstream/pull/4222'

15 months agoMerge remote-tracking branch 'upstream/pull/4221'
Tom Hughes [Sun, 3 Sep 2023 17:52:54 +0000 (18:52 +0100)]
Merge remote-tracking branch 'upstream/pull/4221'

15 months agoRemove unused partial _user.atom.builder
Anton Khorev [Sun, 3 Sep 2023 11:47:35 +0000 (14:47 +0300)]
Remove unused partial _user.atom.builder

15 months agoAdd bbox parameter to notes search api
Anton Khorev [Fri, 1 Sep 2023 12:48:07 +0000 (15:48 +0300)]
Add bbox parameter to notes search api

15 months agoCheck required bbox parameter presence outside of BoundingBox class
Anton Khorev [Sun, 3 Sep 2023 06:38:11 +0000 (09:38 +0300)]
Check required bbox parameter presence outside of BoundingBox class

15 months agoDrop non-functional check for nil email
Tom Hughes [Sat, 2 Sep 2023 10:51:43 +0000 (11:51 +0100)]
Drop non-functional check for nil email

15 months agoMerge remote-tracking branch 'upstream/pull/4216'
Tom Hughes [Sat, 2 Sep 2023 10:48:56 +0000 (11:48 +0100)]
Merge remote-tracking branch 'upstream/pull/4216'

15 months agoMerge remote-tracking branch 'upstream/pull/4214'
Tom Hughes [Sat, 2 Sep 2023 10:47:39 +0000 (11:47 +0100)]
Merge remote-tracking branch 'upstream/pull/4214'

15 months agoAdd some additional preloads to notes#feed
Tom Hughes [Sat, 2 Sep 2023 10:39:02 +0000 (11:39 +0100)]
Add some additional preloads to notes#feed

15 months agoMove email-related methods to mixin
Anton Khorev [Fri, 1 Sep 2023 16:33:22 +0000 (19:33 +0300)]
Move email-related methods to mixin

15 months agoAdd notes feed description for unspecified area
Anton Khorev [Fri, 1 Sep 2023 14:05:07 +0000 (17:05 +0300)]
Add notes feed description for unspecified area

15 months agoLocalisation updates from https://translatewiki.net.
translatewiki.net [Thu, 31 Aug 2023 11:19:07 +0000 (13:19 +0200)]
Localisation updates from https://translatewiki.net.

15 months agoMerge remote-tracking branch 'upstream/pull/4212'
Tom Hughes [Thu, 31 Aug 2023 10:12:03 +0000 (11:12 +0100)]
Merge remote-tracking branch 'upstream/pull/4212'

15 months agoMerge pull request #4211 from tomhughes/changeset-comment-cleanup
Andy Allan [Thu, 31 Aug 2023 09:02:18 +0000 (10:02 +0100)]
Merge pull request #4211 from tomhughes/changeset-comment-cleanup

Address review comments for changeset comment limiting

15 months agoBump facebook API version
Tom Hughes [Wed, 30 Aug 2023 19:31:24 +0000 (20:31 +0100)]
Bump facebook API version

15 months agoImprove testing of changeset comment rate limits
Tom Hughes [Wed, 30 Aug 2023 18:11:08 +0000 (19:11 +0100)]
Improve testing of changeset comment rate limits

15 months agoMove changeset comment rate limit check to a predicate method
Tom Hughes [Wed, 30 Aug 2023 17:28:32 +0000 (18:28 +0100)]
Move changeset comment rate limit check to a predicate method

15 months agoImprove naming of changeset comment rate limit settings
Tom Hughes [Wed, 30 Aug 2023 17:25:06 +0000 (18:25 +0100)]
Improve naming of changeset comment rate limit settings

15 months agoUse bootstrap badges to implement count-number badges
Andy Allan [Wed, 30 Aug 2023 17:11:56 +0000 (18:11 +0100)]
Use bootstrap badges to implement count-number badges

This leaves bootstrap to take care of most aspects, while retaining
the current colours and font weights.

15 months agoMerge remote-tracking branch 'upstream/pull/4210'
Tom Hughes [Wed, 30 Aug 2023 17:10:20 +0000 (18:10 +0100)]
Merge remote-tracking branch 'upstream/pull/4210'

15 months agoMerge remote-tracking branch 'upstream/pull/4209'
Tom Hughes [Wed, 30 Aug 2023 17:09:41 +0000 (18:09 +0100)]
Merge remote-tracking branch 'upstream/pull/4209'

15 months agoUse Activerecord '#or' method for queries
Andy Allan [Wed, 30 Aug 2023 16:17:15 +0000 (17:17 +0100)]
Use Activerecord '#or' method for queries

That let's us use relation names (like `sender`) and avoid dealing
directly with ids.

15 months agoUse trace instead of gpx_id in queries
Andy Allan [Wed, 30 Aug 2023 15:51:44 +0000 (16:51 +0100)]
Use trace instead of gpx_id in queries

This makes the queries easier to read.

15 months agoAvoid using _id in queries
Andy Allan [Wed, 30 Aug 2023 15:45:04 +0000 (16:45 +0100)]
Avoid using _id in queries

This makes the queries shorter and easier to read.

15 months agoMerge pull request #4193 from AntonKhorev/lookup-friend
Andy Allan [Wed, 30 Aug 2023 14:17:11 +0000 (15:17 +0100)]
Merge pull request #4193 from AntonKhorev/lookup-friend

Lookup friend user before make/remove friend action

15 months agoMerge pull request #4197 from AntonKhorev/user-resources
Andy Allan [Wed, 30 Aug 2023 14:11:57 +0000 (15:11 +0100)]
Merge pull request #4197 from AntonKhorev/user-resources

Move user lookup/error methods from app controller to concerns

15 months agoMerge pull request #4202 from tomhughes/changeset-comment-limit
Andy Allan [Wed, 30 Aug 2023 10:12:40 +0000 (11:12 +0100)]
Merge pull request #4202 from tomhughes/changeset-comment-limit

Add rate limiting for changeset comments

15 months agoUpdate bundle
Tom Hughes [Tue, 29 Aug 2023 17:08:56 +0000 (18:08 +0100)]
Update bundle

15 months agoMerge remote-tracking branch 'upstream/pull/4208'
Tom Hughes [Tue, 29 Aug 2023 17:08:06 +0000 (18:08 +0100)]
Merge remote-tracking branch 'upstream/pull/4208'

15 months agoBump osm-community-index from 5.5.5 to 5.6.0
dependabot[bot] [Mon, 28 Aug 2023 23:28:12 +0000 (23:28 +0000)]
Bump osm-community-index from 5.5.5 to 5.6.0

Bumps [osm-community-index](https://github.com/osmlab/osm-community-index) from 5.5.5 to 5.6.0.
- [Release notes](https://github.com/osmlab/osm-community-index/releases)
- [Changelog](https://github.com/osmlab/osm-community-index/blob/main/CHANGELOG.md)
- [Commits](https://github.com/osmlab/osm-community-index/compare/v5.5.5...v5.6.0)

---
updated-dependencies:
- dependency-name: osm-community-index
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
15 months agoLocalisation updates from https://translatewiki.net.
translatewiki.net [Mon, 28 Aug 2023 11:26:20 +0000 (13:26 +0200)]
Localisation updates from https://translatewiki.net.

15 months agoMerge remote-tracking branch 'upstream/pull/4198'
Tom Hughes [Sun, 27 Aug 2023 08:46:10 +0000 (09:46 +0100)]
Merge remote-tracking branch 'upstream/pull/4198'

15 months agoRestore ordering of results from the users#index API call
Tom Hughes [Sat, 26 Aug 2023 16:41:22 +0000 (17:41 +0100)]
Restore ordering of results from the users#index API call

15 months agoMerge remote-tracking branch 'upstream/pull/4203'
Tom Hughes [Sat, 26 Aug 2023 11:30:15 +0000 (12:30 +0100)]
Merge remote-tracking branch 'upstream/pull/4203'

15 months agoAdd checks to ensure that the response is empty
ENT8R [Sat, 26 Aug 2023 11:01:05 +0000 (13:01 +0200)]
Add checks to ensure that the response is empty

15 months agoMerge remote-tracking branch 'upstream/pull/4204'
Tom Hughes [Sat, 26 Aug 2023 09:44:48 +0000 (10:44 +0100)]
Merge remote-tracking branch 'upstream/pull/4204'

15 months agoSort users by their ids
ENT8R [Sat, 26 Aug 2023 08:14:40 +0000 (10:14 +0200)]
Sort users by their ids

15 months agoChange tests to expect a successful (empty) response even if the user is not visible...
ENT8R [Sat, 26 Aug 2023 07:37:06 +0000 (09:37 +0200)]
Change tests to expect a successful (empty) response even if the user is not visible anymore

16 months agoBump eslint from 8.47.0 to 8.48.0
dependabot[bot] [Fri, 25 Aug 2023 23:11:59 +0000 (23:11 +0000)]
Bump eslint from 8.47.0 to 8.48.0

Bumps [eslint](https://github.com/eslint/eslint) from 8.47.0 to 8.48.0.
- [Release notes](https://github.com/eslint/eslint/releases)
- [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md)
- [Commits](https://github.com/eslint/eslint/compare/v8.47.0...v8.48.0)

---
updated-dependencies:
- dependency-name: eslint
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
16 months agoUse where instead of find to prevent 404
ENT8R [Fri, 25 Aug 2023 22:31:18 +0000 (00:31 +0200)]
Use where instead of find to prevent 404

16 months agoAdd rate limiting for changeset comments
Tom Hughes [Fri, 25 Aug 2023 18:21:53 +0000 (19:21 +0100)]
Add rate limiting for changeset comments

Fixes #4196

16 months agoTest that suspended and deleted users can't use OAuth tokens
Tom Hughes [Fri, 25 Aug 2023 08:49:44 +0000 (09:49 +0100)]
Test that suspended and deleted users can't use OAuth tokens

16 months agoLogout while testing OAuth 1 token usage
Tom Hughes [Fri, 25 Aug 2023 08:44:25 +0000 (09:44 +0100)]
Logout while testing OAuth 1 token usage

This ensures we're not accidentally inheriting any session permissions.

16 months agoSeparate authenticating user from application owner in OAuth 1 tests
Tom Hughes [Fri, 25 Aug 2023 07:51:41 +0000 (08:51 +0100)]
Separate authenticating user from application owner in OAuth 1 tests

16 months agoLocalisation updates from https://translatewiki.net.
translatewiki.net [Thu, 24 Aug 2023 11:21:00 +0000 (13:21 +0200)]
Localisation updates from https://translatewiki.net.

16 months agoMake the TOTP cookie httponly
Tom Hughes [Tue, 22 Aug 2023 20:18:45 +0000 (21:18 +0100)]
Make the TOTP cookie httponly