Hacker News new | ask | show | jobs
by throwawaymath 2733 days ago
Yes, that's precisely why CORS is a poor fit for authentication :)
1 comments

Sure, but I don't see why the tip in OP is "don't use CORS". To me that implies there is actually something insecure about using it.
Yeah you can use CORS securely, there are just pitfalls to look out for.