Re: User confirmation and 307 redirects

On Thu, Aug 19, 2010 at 2:06 PM, Roy T. Fielding <fielding@gbiv.com> wrote:
> It isn't a feature.  It is a security constraint.  The fact that some
> browsers have security holes is well known.

It's completely ineffective as a security mechanism.  At best, all it
could do is result in blame-the-user security, which isn't security at
all.

Adam

Received on Thursday, 19 August 2010 21:11:45 UTC