Re: [RFC] [Discussion] Deprecate GET/POST sessions
| From: | Rob Landers | Date: | Sun, 03 Mar 2024 10:37:15 +0000 |
| Subject: | Re: [RFC] [Discussion] Deprecate GET/POST sessions | ||
| References: | 1 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-122541@lists.php.net to get a copy of this message | ||
On Sat, Mar 2, 2024, at 22:10, Kamil Tekiela wrote:
> Hi Internals,
>
> I would like to start a discussion on a new RFC
> https://wiki.php.net/rfc/deprecate-get-post-sessions
>
> Please let me know whether the idea is clear and the RFC is understandable.
>
> In particular, I am looking for any feedback as to why this is a bad
> idea. The primary motivation behind this RFC is to reduce potential
> security pitfalls.
>
> Regards,
> Kamil Tekiela
>
For what it is worth, I’ve used this with great success on Google’s http-based job system in
their cloud. Whether that is a good idea or not, I have no idea. But I suspect I’m not the only
one that has relied on this behavior.
— Rob