Hacker News new | ask | show | jobs
by zadokshi 2306 days ago
Then throw a hidden input field with a CSRF token in your form and your done.

Not sure what the big deal is here.