DEV Community

Discussion on: Has anyone used Okta?

Collapse
 
rhymes profile image
rhymes

I haven't used Okta yet, but one of its developers, Randall Degges @rdegges , hangs out here and wrote one of my favorite rants on this websites which is not about Okta but still might be useful in term of authentication:

Collapse
 
lysofdev profile image
Esteban Hernández

tl;dr - LocalStorage is not encrypted or domain-restricted. Basically, any JS script can read your LocalStorage and compromise your authentication tokens. Use Cookies instead.