I\'m developing a DJANGO + AngularJS application, where the angular part is not being served by django.
I set the angular $httpProvider as follows:
app.config(["$httpProvider", function($httpProvider) {
var csrfToken = getCookie('csrftoken');
$httpProvider.defaults.headers.common['X-CSRFToken'] = csrfToken;
}])
getCookie() take from https://docs.djangoproject.com/en/dev/ref/contrib/csrf/
Or set each method separately
$httpProvider.defaults.headers.post['X-CS....
$httpProvider.defaults.headers.get['X-CS....