[Catalyst] Re: REST - like uri design for CRUD

Aristotle Pagaltzis pagaltzis at gmx.de
Wed Jan 23 03:50:11 GMT 2008


* Christopher Laco <claco at chrislaco.com> [2008-01-23 04:45]:
> If clients aren't using their browser against the REST
> interface...than the worry of XSRF are dimished I would think.

Only if the browser-facing site does not allow the user to
initiate destructive actions. That doesn’t seem like a very
common scenario to me.

Regards,
-- 
Aristotle Pagaltzis // <http://plasmasturm.org/>



More information about the Catalyst mailing list