Overview
Recog's security is compromised with regular long-lived refresh tokens due to the increased likelihood of a high-jacker being able to to make use of the token for a longer time. Rotating tokens ensure refresh tokens are invalidated quickly to avoid the effectiveness of such an attack.
Overview
Recog's security is compromised with regular long-lived refresh tokens due to the increased likelihood of a high-jacker being able to to make use of the token for a longer time. Rotating tokens ensure refresh tokens are invalidated quickly to avoid the effectiveness of such an attack.