Security/CSP/CSRFModule: Difference between revisions

Jump to navigation Jump to search
no edit summary
No edit summary
Line 50: Line 50:


<b>Documents that enable <tt>anti-csrf</tt> must not depend on external resources that are only accessible via <tt>Cookie</tt>-authorized HTTP request.</b>
<b>Documents that enable <tt>anti-csrf</tt> must not depend on external resources that are only accessible via <tt>Cookie</tt>-authorized HTTP request.</b>
== <tt>cookieless-images</tt>  ==
TODO: Affects all images, regardless of where they are loaded from.


= Examples  =
= Examples  =
35

edits

Navigation menu