fresh-oxygen-22993
12/19/2024, 10:28 AMmagnificent-energy-493
application/x-www-urlencoded
) and REST GET requests.
• HTTP Cookies to prevent CSRF and Session Hijacking attack vectors.
So rather then "inventing" a new protocol or standard, Ory Kratos implements existing protocols that have been around for decades.
You can read more about the flows that Ory Kratos implements here: https://www.ory.sh/docs/kratos/self-service
You can read more about the design philosophy behind the project here: https://www.ory.sh/docs/ecosystem/software-architecture-philosophy