reset session at sign_in for protect from session fixation attacks. by madogiwa0124 · Pull Request #108 · mikker/passwordless

It is recommended to reset the session at sign in for protect from session fixation attacks. So reseted session in Passwordless::ControllerHelpers#sign_in. 2.7 Session Fixation - Countermeasures ...