Hacker News new | ask | show | jobs
by swiftcoder 549 days ago
> no currently known security problems

To be fair, that is the layman's definition of "secure"

1 comments

Yes, that was my usage of "secure" here. I obviously didn't mean that we should blindly trust SAML implementations. SAML should be avoided if possible, due to inherently complicated implementation. The same goes true for JWT. Both standards have better alternatives which are viable for the majority of necessary use cases.