Hacker News new | ask | show | jobs
by P5fRxh5kUvp2th 1349 days ago
To me this is the hilarious part.

Q: "how do they use the workarounds needed to secure the more complex approaches?"

A: "those security concerns don't exist in the approach, no workaround needed. That's part of the simplicity".

It just represents a fundamental misunderstanding, but it's not their fault, they've never seen anything else. Like someone using a JWT instead of a session cookie.

1 comments

>Like someone using a JWT instead of a session cookie

Those aren’t mutually exclusive, you know.