aboutsummaryrefslogtreecommitdiff
path: root/app/routes/auth_routes.py
diff options
context:
space:
mode:
authorParker <contact@pkrm.dev>2024-11-08 15:13:33 -0600
committerParker <contact@pkrm.dev>2024-11-08 15:13:33 -0600
commit3cde652d52985365d1daf370065753f54e765f9d (patch)
tree9802fe779a4cac11f59baad8898e6106d0729208 /app/routes/auth_routes.py
parentc13c9ebbbb0e28619a44aa4829b15ee08fce819c (diff)
Set cookie on /refresh
Diffstat (limited to 'app/routes/auth_routes.py')
-rw-r--r--app/routes/auth_routes.py8
1 files changed, 4 insertions, 4 deletions
diff --git a/app/routes/auth_routes.py b/app/routes/auth_routes.py
index cc7cc24..3054e22 100644
--- a/app/routes/auth_routes.py
+++ b/app/routes/auth_routes.py
@@ -58,6 +58,7 @@ async def login_for_access_token(
@router.post("/refresh")
async def refresh_access_token(
current_user: Annotated[User, Depends(refresh_get_current_user)],
+ response: Response,
) -> Token:
"""
Return a new access token if the refresh token is valid
@@ -67,7 +68,6 @@ async def refresh_access_token(
data={"sub": current_user.id, "refresh": False},
expires_delta=access_token_expires,
)
- return Token(
- access_token=access_token,
- token_type="bearer",
- )
+ response = JSONResponse(content={"success": True})
+ response.set_cookie(key="access_token", value=access_token, httponly=True)
+ return response