HN
Hacker News
Top
New
Best
Ask
Show
Jobs
Comment by drum | Hacker News Reader
Parent
Full thread
drum
·
thanks! now if only i can prevent the spam...
View on HN
schleppy_oc
·
Why not just use a simple csrf stored in a session? You already have an "authenticiy_token" in the request data, why not use it, or add another value for csrf?
Reply on news.ycombinator.com