Hacker News new | ask | show | jobs
by pharmakom 1845 days ago
Imagine two parties trust each other to have the right intentions but imperfect endpoint security. If they send private data to each other, isn’t it better for messages to expire after a useful window in case either is compromised in the future? Same reason we have expiring JWTs