Skip to content

How to invalidate a token when it is accidentally leaked #2696

Closed Answered by HowieHz
HowieHz asked this question in Q&A
Discussion options

You must be logged in to vote

Looking at the source code, I see that modifying the hash salt invalidates the original token, but I'm not sure if this affects existing data in databases.

Replies: 2 comments 2 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
2 replies
@mikecao
Comment options

@HowieHz
Comment options

Answer selected by HowieHz
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants