Skip to content

Hashing Refresh Tokens #11

Answered by samuel-lucas6
austins asked this question in Q&A
Discussion options

You must be logged in to vote

Because the refresh token is randomly generated and sufficiently long to be high in entropy, using BLAKE2b is fine. You don't need a slowdown or a salt in this scenario so Argon2id is unnecessary. Good luck with your project.

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by samuel-lucas6
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants