I saw a lot of open-source projects used by millions of people, but few of them are websites where users can access protected resources and authenticate themselves.
I think the reason is authentication and data integrity. I think website owners scared about website security, that's why they don't make the website open source.
I am specifically involved in MERN stack development, and I want to make an open-source website for developers.
On this website, all developer's data will be publicly visible to the world excluding private data and contact details.
This website will have an admin, who can enter all data into the database using the web interface(frontend). I want this operation to be secured.
Overall, I want to make a website where everyone can see data, but the editing operation will be carried by an authentication person.
So, I want to use JWT to authorize the admin and store the JWT token in the browser cookie(same site and server-side cookie).
Sorry for poor English and bad writing skills.