Hacker News new | ask | show | jobs
by earthboundkid 1877 days ago
JWTs are security time bombs in general, but Go has a standard mechanism for constant time comparisons: https://pkg.go.dev/crypto/subtle