Hacker News new | ask | show | jobs
by the_mitsuhiko 3741 days ago
It's a transaction bound short lived one time token. Nothing you can replay.
1 comments

The memorable message isn't.
Sure, but that memorable message is not really all that useful on a non SSL page, but it's also not particularly important from a security point of view.