Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Example Code doesn't use &state for CSRF? #10

Closed
auxiliary-character opened this issue Jul 27, 2017 · 1 comment
Closed

Example Code doesn't use &state for CSRF? #10

auxiliary-character opened this issue Jul 27, 2017 · 1 comment

Comments

@auxiliary-character
Copy link

The documentation recommends using &state for CSRF in step 1, but the example code doesn't appear to use it. Is this a security problem?

@phildini
Copy link
Contributor

Thanks for asking, sorry it took us so long to reply. Whether or not it's a bug, it's certainly unclear, and we'll adjust the examples in a future version to make it clearer.

phildini pushed a commit that referenced this issue Jan 26, 2018
phildini pushed a commit that referenced this issue Jan 26, 2018
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants