logoalt Hacker News

sublineartoday at 2:33 AM1 replyview on HN

I'm curious if having unique URLs per user session would mitigate this.

I think that's already best practice in most API designs anyway?


Replies

kay_otoday at 4:50 AM

Probably.

No, it isn't. Ive not seen this in an API ever and only in webapps ?phpsessid= back in childhood