Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
alexghr
4y ago
0 comments
Save
Share
I think they could replace XSRF tokens, but until all major browsers support the headers (Safari 11 seems to be missing support, see other comments) you can't really block requests that don't have the new Sec-Fetch-* headers.
0 comments
No comments yet.