Hacker News new | ask | show | jobs
by Noumenon72 1964 days ago
That's still not how I use tl;dr, because it's a teaser, not a summary. I would say "Don't use SameSite=Strict to replace anti-CSRF tokens if you have subdomains". That tells you "Here's what you're going to believe by the end of this article", and then you can decide whether you already know that or care to know.