GitHub User: gshaw
Is there any reason why you are prefixing the secure cookie with a string and simply not using the user id?
Is there any reason why you are prefixing the secure cookie with a string and simply not using the user id?