In this case, the auth provider is acting as a SSO provider, and can be trusted to maintain its own CSRF protections. |
||
|---|---|---|
| .. | ||
| anonymous_cache.rb | ||
| discourse_public_exceptions.rb | ||
| enforce_hostname.rb | ||
| missing_avatars.rb | ||
| omniauth_bypass_middleware.rb | ||
| request_tracker.rb | ||
| turbo_dev.rb | ||