Hacker News new | ask | show | jobs
by CodeLieutenant 24 days ago
Still the same problem, if your account is compromised, you cannot invalidate the session, same for web, same for native app. You need to store it so that it can be blacklisted.