Open
Description
Use only JSON APIs then
Disable CORS then
Make sure that none of your GET requests change any relevant data in your database. then
Avoid using POST and then :)
Don't use method override! and so on!
Are we allowed to make any changes in the database? :)))))
This page is referred in the first row of csurf readme, as this page referres csurf team. I'd rather expect something like this to understand something about CSRF!
Metadata
Metadata
Assignees
Labels
No labels