Hacker News new | past | comments | ask | show | jobs | submit login

I’m not sure what you are trying to say here? That dealing with refresh token expiry revocation for a single system (and two sessions) is better than dealing with expiry and revocation for 3?

I see some strong arguments for standardizing on a single one.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: