Hacker News new | ask | show | jobs
by Freak_NL 3334 days ago
Or if the old approach is no longer trusted, simply refuse old tokens. Any users with the old tokens will simply be forced to re-authenticate.