I apply the payment method in my application, and the bank’s website sends back a request with payment information, for example, status, payment identifier ...
But to be sure that the request is not from someone trying to do bad things, can I only accept the request from my banking system? I am looking for something to check the request for this action / controller only with mybank.com and skip the others.
source
share