Hacker News new | past | comments | ask | show | jobs | submit login

Someone commented on the original post:

"Or provide a single use single action token that performs one function, like confirm friend. Security doesn’t need to be all or nothing."

For extra security this token can be one time useable only.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: