Performance: Session security
HIGH IMPACT
Session security affects how safely user data is stored and accessed during browsing, impacting user trust and interaction speed.
from flask import Flask, session import os app = Flask(__name__) app.secret_key = os.urandom(24) app.config.update( SESSION_COOKIE_SECURE=True, SESSION_COOKIE_HTTPONLY=True, SESSION_COOKIE_SAMESITE='Lax' ) @app.route('/') def index(): session['user'] = 'user123' return 'Logged in securely'
from flask import Flask, session app = Flask(__name__) app.secret_key = 'simplekey' @app.route('/') def index(): session['user'] = 'user123' return 'Logged in'
| Pattern | DOM Operations | Reflows | Paint Cost | Verdict |
|---|---|---|---|---|
| Weak session key and no secure cookie flags | Minimal | 0 | 0 | [X] Bad |
| Strong random key with secure, HttpOnly, SameSite cookies | Minimal | 0 | 0 | [OK] Good |