It is not up to the generic api to decide on CSRF policy. This must be left to client applications
// Module o use with jquery to handle no conflict. cf: http://requirejs.org/docs/jquery.html#noconflictmap
define('jquery-private',['jquery'], function (jq) {
'use strict';
return jq.noConflict( true );
});