Currently we don't override the PHP session handler. The session containers the Decrypted private key of the logged in user