summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorChris McDonough <chrism@plope.com>2011-07-09 18:13:55 -0700
committerChris McDonough <chrism@plope.com>2011-07-09 18:13:55 -0700
commit36a3afde211a9182557c458a1d2ee528229ccc64 (patch)
tree6563e64f6f29dc32a3cd36504a2ce672188d36d9
parent6a0602b3ce4d2a6de9dca25d8e0d390796a79267 (diff)
parent35259d7b1f029391a839c96f7750d6b3433ad2c9 (diff)
downloadpyramid-36a3afde211a9182557c458a1d2ee528229ccc64.tar.gz
pyramid-36a3afde211a9182557c458a1d2ee528229ccc64.tar.bz2
pyramid-36a3afde211a9182557c458a1d2ee528229ccc64.zip
Merge pull request #225 from ejo/patch-1
Minor wording change for accuracy
-rw-r--r--docs/narr/sessions.rst2
1 files changed, 1 insertions, 1 deletions
diff --git a/docs/narr/sessions.rst b/docs/narr/sessions.rst
index 97e3ebc55..365ee395b 100644
--- a/docs/narr/sessions.rst
+++ b/docs/narr/sessions.rst
@@ -288,7 +288,7 @@ Preventing Cross-Site Request Forgery Attacks
`Cross-site request forgery
<http://en.wikipedia.org/wiki/Cross-site_request_forgery>`_ attacks are a
phenomenon whereby a user with an identity on your website might click on a
-URL or button on another website which unwittingly redirects the user to your
+URL or button on another website which secretly redirects the user to your
application to perform some command that requires elevated privileges.
You can avoid most of these attacks by making sure that the correct *CSRF