basalt / auth/src / CsrfOptions
Interface: CsrfOptions
Defined in: auth/src/plugin.ts:72
Properties
trustedOrigins?
> optional trustedOrigins?: string[]
Defined in: auth/src/plugin.ts:78
Extra origins (scheme://host[:port]) allowed to send cookie-authenticated unsafe requests — e.g. a front-end on a sibling subdomain. The request's own origin (its Host / X-Forwarded-Host) is always allowed.