Sign up
Sign in
… JWT, which should contain an encoded user identifier in JSON format signed by our back-end server. We put the JWT into our cookie so that we don’t have to store it in local-storage and risk XSS attacks. This is what an authentication process for a user named TheLegend27 might look like using JWTs:
Bryan Manuele (Fermi Dirak)
--
1
Share
Aren’t cookies also vulnerable to XSS attacks?
Software Engineer, YouTuber, Tech Blogger. (he/him) More about here -> https://linktr.ee/abdisalan
Help
Status
About
Careers
Press
Blog
Privacy
Rules
Terms
Text to speech