Skip to content
{# `page` exists so third-party template packs can insert their own wrapper
blocks between and the leaf template's content. Our own templates
just override `content` and ignore it. #}
Login
Enter your credentials.
{# Security chrome (requirement 28). Core-owned - keep this include when
re-skinning; see templates/_core/session_veil.html. #}
{# ---------------------------------------------------------------------------
CORE-OWNED. Do not edit in a site.
This is the session-timeout concealment for requirement 28 - the screen is
blanked when the session ends so personal data is not left on an unattended
monitor. It lives in its own include, rather than inline in base.html,
because base.html is the file every site RE-SKINS: leaving security chrome
in there means a site's redesign either conflicts with core updates forever
or quietly drops the control.
A re-skinned base.html must keep the include line. tests/test_sessions.py
asserts the veil is present on an authenticated page, so losing it fails the
suite rather than failing silently.
Note what this is NOT: it is a courtesy, not the control. The session is
already dead server-side and every authenticated response carries no-store.
If this never runs, nothing is weakened.
--------------------------------------------------------------------------- #}