I'm pretty sure I disagree with this blog post, on pretty much all points. Just depends on what you're storing in the "session".
-
-
-
Storing a refresh token and access token in an signed(encrypted)) cookie (stateless JWT) looks quite nice to me.
- 1 more reply
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.