|
|
|
|
|
by tendencydriven
1329 days ago
|
|
I don't think you're quite answering the question they've asked. They want to know if you're doing any domain validation for requests sent to your URL, otherwise someone could quite easily eat up their quota by sending POST requests to the URL in the form. |
|
Would there be a reason to do this other than to eat a competitor's quota or just cause someone trouble?
The malicious actor would not benefit in any other way, correct? They would not actually get the submitted data…