DEV Community

Discussion on: Forging JSON Web Tokens To Win a Prize

Collapse
 
antoinette0x53 profile image
Antoinette Maria • Edited

Yes I agree. I did read a few articles while doing some further research later that suggests JWTs shouldn't be used for session management, but I won't pretend to be an expert.I'm fairly certain storing the data in a HTTPS-only cookie would not yield the same result.