Skip to content
This repository was archived by the owner on Feb 3, 2020. It is now read-only.
This repository was archived by the owner on Feb 3, 2020. It is now read-only.

csrf #10

@dvv

Description

@dvv

Hi!

Am I right that since the secure session cookie gets updated on every request and is definitely a nonce, it can be used also as CSRF token for free?

TIA,
--Vladimir

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions