@segment/analytics.js-core
Advanced tools
Comparing version 3.10.1 to 3.11.0
@@ -9,3 +9,3 @@ 'use strict'; | ||
var clone = require('@ndhoule/clone'); | ||
var cookie = require('component-cookie'); | ||
var cookie = require('@segment/cookie'); | ||
var debug = require('debug')('analytics.js:cookie'); | ||
@@ -48,3 +48,4 @@ var defaults = require('@ndhoule/defaults'); | ||
path: '/', | ||
domain: domain | ||
domain: domain, | ||
sameSite: 'Lax' | ||
}); | ||
@@ -51,0 +52,0 @@ |
@@ -12,3 +12,3 @@ 'use strict'; | ||
var inherit = require('inherits'); | ||
var rawCookie = require('component-cookie'); | ||
var rawCookie = require('@segment/cookie'); | ||
var uuid = require('uuid'); | ||
@@ -15,0 +15,0 @@ var localStorage = require('./store'); |
{ | ||
"name": "@segment/analytics.js-core", | ||
"author": "Segment <friends@segment.com>", | ||
"version": "3.10.1", | ||
"version": "3.11.0", | ||
"description": "The hassle-free way to integrate analytics into any web application.", | ||
@@ -42,2 +42,3 @@ "keywords": [ | ||
"@segment/canonical": "^1.0.0", | ||
"@segment/cookie": "^1.1.5", | ||
"@segment/is-meta": "^1.0.0", | ||
@@ -51,3 +52,2 @@ "@segment/isodate": "^1.0.2", | ||
"bind-all": "^1.0.0", | ||
"component-cookie": "^1.1.2", | ||
"component-emitter": "^1.2.1", | ||
@@ -54,0 +54,0 @@ "component-event": "^0.1.4", |
@@ -66,2 +66,6 @@ 'use strict'; | ||
it('should set SameSite=Lax by default', function() { | ||
assert(cookie.options().sameSite === 'Lax'); | ||
}); | ||
it('should fallback to `domain=null` when it cant set the test cookie', function() { | ||
@@ -68,0 +72,0 @@ cookie.options({ domain: 'baz.com' }); |
'use strict'; | ||
var assert = require('proclaim'); | ||
var rawCookie = require('component-cookie'); | ||
var rawCookie = require('@segment/cookie'); | ||
var sinon = require('sinon'); | ||
@@ -6,0 +6,0 @@ var analytics = require('../lib'); |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
5605
226727
38
1
+ Added@segment/cookie@^1.1.5
+ Added@segment/cookie@1.2.0(transitive)
- Removedcomponent-cookie@^1.1.2