Homepage
Sign in / Sign up
Go to the profile of @kristjanmik
@kristjanmik
@jsconfis organizer, @rvkjs community leader, maker of things and co-founder of @Watchbox_app
Apr 4, 2016
Killing CORS Preflight Requests on a React SPA
Damon Aw
1177

Even though the request is made via HTTPS the url and query string can still be sniffed quite easily while the header payload is encrypted

  • Go to the profile of @kristjanmik

    @kristjanmik

    @jsconfis organizer, @rvkjs community leader, maker of things and co-founder of @Watchbox_app

    • Share
    Go to the profile of @kristjanmik
    Never miss a story from @kristjanmik, when you sign up for Medium. Learn more
    Never miss a story from @kristjanmik