added CSRF helper to rails guide documentation.

committed Mar 8, 2014
Sanitizes a block of CSS code.
Strips all link tags from text leaving just the link text.
# => Blog: Visit.
This uses the html-scanner tokenizer and so its HTML parsing ability is limited by that of html-scanner.
NB: The output may still contain unescaped '<', '>', '&' characters and confuse browsers.
+### CsrfHelper
+Returns meta tags "csrf-param" and "csrf-token" with the name of the cross-site
+request forgery protection parameter and token, respectively.
+ <%= csrf_meta_tags %>
+These are used to generate the dynamic forms that implement non-remote links
+with `:method`.
+Note that regular forms generate hidden fields, and that Ajax calls are
+whitelisted, so they do not use these tags.
+More details can be found in the [Rails Security Guide](security.html).
Localized Views

