csrf
csrf copied to clipboard
PSR-15 middleware implementing CSRF protection
In the documentation you refer to [OWASP](https://cheatsheetseries.owasp.org/cheatsheets/Cross-Site_Request_Forgery_Prevention_Cheat_Sheet.html): now only `Synchronizer Token Pattern` and `Double Submit Cookie` are actual there. `HMAC Based Token Pattern` and `Encryption based Token Pattern` were removed....
| Q | A | ------------- | --- | Is bugfix? | ❌ | New feature? | ✔️ | Breaks BC? | ❌ Example for #65
https://cheatsheetseries.owasp.org/cheatsheets/Cross-Site_Request_Forgery_Prevention_Cheat_Sheet.html#employing-custom-request-headers-for-ajaxapi