DEV Community

Discussion on: How to Secure JWT in a Single-Page Application

Collapse
 
salmannotkhan profile image
Salman Shaikh

What if we specify both in middleware first check if authorization header exists or not and if not then check for cookies. so this way you can support both ways :)

Collapse
 
felixasante profile image
felix asante

I am also interested in your approach. if you can make your explanations clear, it will really help

Some comments have been hidden by the post's author - find out more