Discussion on: JSON web tokens are NOT meant for authenticating the same user repeatedly: Use session tokens instead

David Broadhurst

If you really understand security then you wouldn't consider building your own auth system. It's good to know the fundamentals but it's rarely worth the time and effort to build your own.

