Discourse Cookies

From WebarchDocs
Jump to navigation Jump to search

This page is to document the cookies that Discourse uses, the screenshots belowe were generated using the test site at sands-test.webarchitects.co.uk.

Unauthenticated Access

When you first access sands-test.webarchitects.co.uk without previously accessing the site you are redirected to sands-test.webarchitects.co.uk/login and the following cookie is set:

Cookie-screenshot-1.png

The purpose of this cookie is record the URL you were on before you login in order that you can be redirected to the page you were on after you login, the data it stores is the initial URL and the cookie is set to be deleted when the clients web browser is closed.

Account Creation

When you use the signup form to create an account and submit the account creation form then a session cookie is saved in your web browser:

Cookie-screenshot-2.png

This cookie is set to last as long as your browser is open and will be deleted when your browser is closed, it contains a unique random string.

Login

When a user has completed the account creation process and enters their username and password an additional secure cookie is set:

Cookie-screenshot-3.png

This cookie is valid for two months and ensures that on subsequent visits the user will be automatically logged into the site, the cookie contains a unique random string.