Skip to content

Please improve the token refresh flow in terms of security #1

@369855707

Description

@369855707

Hi, Pal, I read your blog which is really nice one. One thing I'd talk here is that your refresh method is not safe as everyone can renew token by itself.

Could you please improvement the renewal flow to a production level?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions