codesamplex

Beispiel

Differentiate masked authenticity tokens and enforce action-scoped per-form CSRF validation in Rack::Protection::AuthenticityToken.

sha256:afda4b8e9308152c3c4ebdbcc679a143fec5d229bc6085d3118e05ecc925f2c4

PUBLISHED L3_CONTRACT_PASS MIT-0

Fall

Ziel
Differentiate masked authenticity tokens and enforce action-scoped per-form CSRF validation in Rack::Protection::AuthenticityToken. HOW
Pakete
rack-protection 4.2.1
Umgebung
ruby
Erstellt
2026-08-16T16:33:54Z

Häufige Annahme

Rack::Protection::AuthenticityToken.token returns a static raw session token, and any token generated for a session validates any state-changing POST endpoint.

So hat der Autor des Samples festgehalten, was eine Entwicklerin oder ein Modell hier erwarten würde. Der Vertrag darunter ist das, was tatsächlich lief.

Contract

Dateien

Verifiziertes Artefakt herunterladen (tar.gz) — genau die Bytes, gegen die der Contract lief

Ursprungs-Seeder

csx-seed

Verifizierungsbelege