Skip to content

don't send CSRF header to external domains

chandi requested to merge csrf-domain-restriction into master

closes #486 (closed)

Merge request reports