DEV Community

Discussion on: What is really the difference between Cookie, Session and Tokens that nobody is talking about ?.

Collapse
 
incrementis profile image
Akin C.

Hello nshimiye_emmy,

thank you for your article.
It helped me understand Token a bit better.
This part helped me the most:

"[...]if you click yes the app will receive a token granting access to your transactions but the app will only view transactions, it will not be able to wire transfers or to see other details which you would normally be able to see when you login in your bank account. "

Still, I understand that in a bad situation the app will tell you, it will only read transactions, but the truth is, it could request a token that offers more than just reading options without you knowing, right? Wouldn't it be wiser to tell the bank what token the app can use? I apologize in advance if I get anything wrong here :)!

Collapse
 
dev_emmy profile image
nshimiye_emmy

The bank is the one responsible for giving the token to another app, so it really knows what king of access granting it should give to a third-party website or app.