• Randall Leeds's avatar
    Don't rely on cookies to provide the csrf token · cba2320b
    Randall Leeds authored
    Angular won't see the cookie value when running from the extension
    because the app page is served from the extension bundle and is
    therefore on a different origin than the backend.
    
    Similarly, Angular doesn't set the header when making cross-origin
    requests.
    
    Work around the issue by sending the token in responses from the
    backend and setting the header ourselves.
    cba2320b
Name
Last commit
Last update
..
css Loading commit data...
images Loading commit data...
js Loading commit data...
lib Loading commit data...