|
|
|
|
|
by eadmund
836 days ago
|
|
> Another way to mitigate this issue is to store a secret in the browser that initiated the link-request (Ex. local storage). Or just a cookie … But this approach breaks anyway in cases such as a user on a desktop who checks his email on his phone for the confirmation. |
|