|
|
|
|
|
by alexaasp
4817 days ago
|
|
Which sounds kind of bad, if that is the case. 1. Even if the users are idiots you shouldn't let them ruin their own application experience.
2. I would never put anything remotely connected to security and user privileges in the same storage accessible by users, so I would have to set up a separate service. |
|
2. Security handling is purely server-side. You can’t fake your way without using a proper auth-channel.