Hacker News new | ask | show | jobs
by geezerjay 2733 days ago
> JWT is not just another bearer token scheme. It comes with its own additional obligations, restrictions, and extra steps, not to mention the purpose-defeating pitfalls.

Care to provide an example?