Instead, we rely on the Spring Security CSRF protection, like we already do for the login page. Additionally, we remove the authentication check in`isApproved`, because this is already done by Spring Security (and if not, we have bigger problems to worry about). |
||
|---|---|---|
| .. | ||
| src | ||
| .gitignore | ||
| pom.xml | ||