Skip to content

Add Host/Origin/Referer validator middleware #19

Description

@volfpeter

This is essentially the same as the built-in CSRF protection in Next.js, and is reasonable security with secure, HTTP-only, same-site session cookies.

See the Next.js blog for more info: https://nextjs.org/blog/security-nextjs-server-components-actions

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions