From e26366da44bb343e7a95d01ff0dd18b8026c2802 Mon Sep 17 00:00:00 2001 From: Erik Romijn Date: Sat, 2 Aug 2014 18:52:07 +0200 Subject: [PATCH] Fixed #23149 -- Clarified note on HTTPOnly in cookie-based session docs --- docs/topics/http/sessions.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/docs/topics/http/sessions.txt b/docs/topics/http/sessions.txt index 3551cfcf77a..b97dc1bc790 100644 --- a/docs/topics/http/sessions.txt +++ b/docs/topics/http/sessions.txt @@ -124,7 +124,7 @@ and the :setting:`SECRET_KEY` setting. .. note:: It's recommended to leave the :setting:`SESSION_COOKIE_HTTPONLY` setting - ``True`` to prevent tampering of the stored data from JavaScript. + on ``True`` to prevent access to the stored data from JavaScript. .. warning::