you definitely can read and maybe install Breeze starter kits by Laravel
https://laravel.com/docs/9.x/starter-kits#breeze-and-next
and please read more about CSRF
Be part of JetBrains PHPverse 2026 on June 9 – a free online event bringing PHP devs worldwide together.
Hey, Good People of Laracast!
I do have a question or few about Sanctum and cookies. I've noticed that sanctum sends me XSRF cookie regardless of me hitting the cookie endpoint. It was not happing before, then it was, then it wasn't and now it is happening again! Don't know what I did there!
Furthermore with each request to the backend API cookies are refreshed, XSRF one and session one. I completely do not understand why. (Does it mean that session gets a new TTL?)
Apart from that, I see I am logged in but I do not understand the implications of this mysterious behavior. I've elaborated on that problem greatly in my SO post. Could someone explain that to me or let me know what to read to learn what is happening and if it is a problem or not?
Please or to participate in this conversation.