Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
livre
on April 29, 2021
|
parent
|
context
|
favorite
| on:
CSRF, CORS, and HTTP Security Headers Demystified
Cookies work when JavaScript is disabled or has failed to load (your basic functionality should work without it), localStorage doesn't. So unless we are talking about SPAs cookies are generally the better choice.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: