F3: beskyt lie-submit med player session token #36
Reference in New Issue
Block a user
Delete Branch "feature/f3-lie-submit-session-token"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Scope: #16 + #17
Closes #35
Need-to-have security fix:
join_sessionreturnssession_tokenfor player client statesubmit_lienow requiressession_tokenand validates token against playerPlayer.session_tokenGodkendt: need-to-have sikkerhedsfix ser korrekt ud og CI er grøn.