-
Notifications
You must be signed in to change notification settings - Fork 15
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Temporary tokens are missing #40
Comments
I have a fork going that uses I think this is the best way to do it for SSR. Using Using cookies also helps mitigate xss attacks since they are The logout problem is solved with the dual cookie method. One is |
@nolandg |
I'm working on this project again this weekend, will try to post some stuff then. |
It seems that tokens are persistent in current realization. That means there is no logout feature. Session invalidation after resetting password is also missing. Do you plan to implement this features?
The text was updated successfully, but these errors were encountered: