#csrf/golang

3 messages · Page 1 of 1 (latest)

zenith garnet
#

i dont even thing you need csrf tokens at this point just set the SameSite attribute in your cookies to strict

fiery beacon
candid crown
#

That is correct. It is assumed that they are on the same domain as you mentioned submitting a form, which is typically done to the same domain