feat: deny direct access to the spa
This commit is contained in:
@@ -15,10 +15,6 @@ class SignatureValidator
|
|||||||
|
|
||||||
public function validate(Request $request): void
|
public function validate(Request $request): void
|
||||||
{
|
{
|
||||||
if (! $this->botToken) {
|
|
||||||
return;
|
|
||||||
}
|
|
||||||
|
|
||||||
$initDataString = rawurldecode($request->header('X-Telegram-Initdata'));
|
$initDataString = rawurldecode($request->header('X-Telegram-Initdata'));
|
||||||
|
|
||||||
if (! $initDataString) {
|
if (! $initDataString) {
|
||||||
|
|||||||
Reference in New Issue
Block a user