DEV Community

# authentication

User authentication mechanisms

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
How to handle hardware attestation without locking out real users

How to handle hardware attestation without locking out real users

Comments
5 min read
The 946-Millisecond Tax: Migrating API Key Auth from Bcrypt to HMAC-SHA256

The 946-Millisecond Tax: Migrating API Key Auth from Bcrypt to HMAC-SHA256

Comments
9 min read
Stop Storing JWTs in localStorage: A Security Guide for Web Developers

Stop Storing JWTs in localStorage: A Security Guide for Web Developers

1
Comments
3 min read
DBSC Explained: How Device Bound Session Credentials Actually Work

DBSC Explained: How Device Bound Session Credentials Actually Work

1
Comments
7 min read
Laravel Now Has Native Passkeys: A Complete Guide to laravel/passkeys

Laravel Now Has Native Passkeys: A Complete Guide to laravel/passkeys

Comments
9 min read
The Auth0 Pricing Trap: Why Upgrading to Paid Gives You Less

The Auth0 Pricing Trap: Why Upgrading to Paid Gives You Less

Comments
3 min read
How Login Jails Can Dramatically Improve Your Application Security

How Login Jails Can Dramatically Improve Your Application Security

5
Comments
3 min read
Passkey vs Password: Are Passkeys Safer Than Passwords? (2026)

Passkey vs Password: Are Passkeys Safer Than Passwords? (2026)

Comments
9 min read
Auth in Next.js SaaS starters: redirect loops, OAuth callbacks, magic links, and session drift

Auth in Next.js SaaS starters: redirect loops, OAuth callbacks, magic links, and session drift

1
Comments
5 min read
JWT Authentication in ASP.NET Core: Common Mistakes (And How to Avoid Them)

JWT Authentication in ASP.NET Core: Common Mistakes (And How to Avoid Them)

5
Comments
6 min read
Anonymous-first auth with better-auth + Postgres

Anonymous-first auth with better-auth + Postgres

1
Comments
5 min read
Flutter Dio Token Refresh: Fixing the Race Condition Most Tutorials Miss

Flutter Dio Token Refresh: Fixing the Race Condition Most Tutorials Miss

Comments
8 min read
The One-Character OAuth Bug That Broke Our API

The One-Character OAuth Bug That Broke Our API

Comments
2 min read
OAuth 2.0 + PKCE: Why OAuth Alone is Not Enough to Secure Your API

OAuth 2.0 + PKCE: Why OAuth Alone is Not Enough to Secure Your API

1
Comments
1 min read
Building AutoStack.Identity: A Zero-Dependency .NET 10 Library for SAML 2.0, JWT, and XML Signing

Building AutoStack.Identity: A Zero-Dependency .NET 10 Library for SAML 2.0, JWT, and XML Signing

1
Comments
9 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.