lgtm,codescanning * The `js/session-fixation` query has been added. It highlights servers that reuse a session after a user has logged in.