Skip to content
Discussion options

You must be logged in to vote

Queries and mutations don't use Authorization header. They use httpOnly cookies. But you will need to set the anti-csrf header as specified here: https://blitzjs.com/docs/session-management#manual-api-requests

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
1 reply
@niklasgrewe
Comment options

Comment options

You must be logged in to vote
0 replies
Answer selected by niklasgrewe
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants