Hacker News new | ask | show | jobs
by tobystic 759 days ago
Isn’t JWT plaintext? Just remember your security controls

https://owasp.org/www-chapter-vancouver/assets/presentations...

1 comments

I still can put JWT in http only secure cookie.