coates’s avatarcoates’s Twitter Archive—№ 17,977

  1. Putting your CSRF token into a cookie might *seem* very convenient, but you really ought to have someone who has a clue check that out.