Support the ongoing development of Laravel.io →
Security Session
Last updated by @mawe4585 3 weeks ago.
0

According to the docs, it is only included as a convenience to the developer and not needed. You can just rely on the header instead and override the ValidateCsrfToken to not send the http cookie: protected $addHttpCookie = true;

0

Sign in to participate in this thread!

PHPverse

Your banner here too?

Martin Weber mawe4585 Joined 27 May 2025

Moderators

We'd like to thank these amazing companies for supporting us

Your logo here?

Laravel.io

The Laravel portal for problem solving, knowledge sharing and community building.

© 2025 Laravel.io - All rights reserved.