• 0 Posts
  • 2 Comments
Joined 1 year ago
cake
Cake day: June 15th, 2023

help-circle

  • That’s assuming the client wants to make a web app. They may need to connect something else to that API.

    It’s perfectly normal to be able to cater to more authentication scenarios than “web app logging in directly to the target API and using its cookies”.

    If they want to make a web app they should use the cookie mechanism but ultimately each client app is responsible for how it secures its access.