Skip to content

Instantly share code, notes, and snippets.

@mctaylorpants
Last active January 5, 2024 12:07
Show Gist options
  • Save mctaylorpants/1b4849ea7a0a1ddeb01c7dde0e2db226 to your computer and use it in GitHub Desktop.
Save mctaylorpants/1b4849ea7a0a1ddeb01c7dde0e2db226 to your computer and use it in GitHub Desktop.
CSRF protection in Rails - #csrf_meta_tags
# actionview/lib/action_view/helpers/csrf_helper.rb
def csrf_meta_tags
if defined?(protect_against_forgery?) && protect_against_forgery?
[
tag("meta", name: "csrf-param", content: request_forgery_protection_token),
tag("meta", name: "csrf-token", content: form_authenticity_token)
].join("\n").html_safe
end
end
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment