openapi-to-postman
openapi-to-postman copied to clipboard
API Key should be allowed in cookie
According to the Security Scheme Object for OpenAPI 3.0.3, the API key security scheme is allowed the following values for the in field: "query", "header" or "cookie".
It seems though that you're currently limiting this to 'query' and 'header': https://github.com/postmanlabs/openapi-to-postman/blob/develop/lib/schemaUtils.js#L1205
Is there a particular reason for that?
@JaredAAT Main reason for this is due to postman-collection only having query and header values for API key type of authorization. So even if the module supports cookie, the target converted protocol being collection doesn't have support for it.

We'll take a look at this in postman and see if collections can support the same and work on it.