Tell me about your PUT requests to Rails endpoints from client-side frameworks (no jQuery UJS) & how you dealt with CSRF token.
(Of course `protect_from_forgery` by itself doesn't change, but that would be unnecessary breakage of existing apps)
-
-
Understood. My point is that it is necessary breakage (especially in a post-major release like 5.1 for instance).
-
rake rails:upgrade exists for things like this.
- 1 more reply
New conversation -
-
-
I think people should receive deprecation warnings if they’re not passing explicit args to silence exceptions. Then start raising.
-
new_framework_defaults is a lovely place for educating people about things like this that could be easily be missed in older apps.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.