Hello Mike,
You can disable as shown below ->
Cross-Site Request Forgery Protection - SAP NetWeaver Gateway Foundation (SAP_GWFND) - SAP Library
But Please note that for all modifying requests, the service must include this token in an HTTP request header field X-CSRF-Token .
Regards,
Ashwin