Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Hmm, I don't understand why the author said that if we use OAuth, having CSRF protection does not make sense. Does anybody know why?


Consider applying for YC's Winter 2027 batch! Applications are open till November 2.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: