Skip to content
  • Claudio B's avatar
    af954ddd
    [ci skip] Prefer cookies.encrypted over signed (#30129) · af954ddd
    Claudio B authored
    In some examples and guides we are recommending to use code like:
    
    ```ruby
    verified_user = User.find_by(id: cookies.signed[:user_id])
    ```
    
    My suggestion is to use instead:
    
    ```ruby
    verified_user = User.find_by(id: cookies.encrypted[:user_id])
    ```
    
    which invites users to prefer the "newer" encrypted cookies over the
    "legacy" signed cookies.
    af954ddd
    [ci skip] Prefer cookies.encrypted over signed (#30129)
    Claudio B authored
    In some examples and guides we are recommending to use code like:
    
    ```ruby
    verified_user = User.find_by(id: cookies.signed[:user_id])
    ```
    
    My suggestion is to use instead:
    
    ```ruby
    verified_user = User.find_by(id: cookies.encrypted[:user_id])
    ```
    
    which invites users to prefer the "newer" encrypted cookies over the
    "legacy" signed cookies.
Loading