Joe Ranweiler
Joe Ranweiler
Moving this to `someday`. See also: https://github.com/FreeAndFair/ColoradoRLA/issues/742
This does work as desired in some cases, and not in others. Will review.
`HttpOnly` flag set (with corresponding client changes) in #677.
@dmzimmerman let's move this to the final deliverable, as we've addressed the most critical part (`HttpOnly` for the session token).
I think we _shouldn't_ do this, unless we e.g. knew enough about the actual physical ballot card to make the screen match. Unless this was a request from CDOS, I...
Moving this to "someday".
Changing milestone to "someday".
@kiniry, what is this issue about? Could you add some more info?
Sorry for the delay, I don't seem to be getting emails about new issues on this repo. Will dig into this over the weekend.
Thanks for reporting and including a tracee to test with. Investigating.