logoalt Hacker News

gunalxlast Sunday at 7:57 PM1 replyview on HN

Your tokens should defiently have expiry times on the range that you would need to login again.


Replies

londons_exploreyesterday at 2:17 AM

I would prefer a 999 year login cookie.

A well designed browser stores the cookies with similar security to the built in password manager anyway

show 1 reply