Hacker News new | ask | show | jobs
by danappelxx 1113 days ago
Right! Which is why we use (public) short-lived JWTs and (private) long-lived refresh tokens. What’s missing?