Comment by rabidsnail

13 years ago

Or xhr with custom header, if you don't want to have to keep track of state.

So that anyone who has JavaScript disabled will be treated like an attacker? No thanks, HN is one of very few sites nowadays that work fine without JavaScript tricks, and I'd much rather PG kept it that way.