Hacker News new | ask | show | jobs
by tzs 1360 days ago
> The idea is that you have a disgruntled employee with a token that expires in 5-10 minutes.

Assuming the tokens issued to employees have an N minute lifetime stop replacing expired tokens for that employee N minutes before you do whatever it is that might disgruntle them enough to make them try to trash your systems?