Discussion on: PKCE authenticaton for Nuxt SPA with Laravel as backend

Can other users not just change the userId in the local cookie to something else and then get other users info from the api? In my case todos

StefanT123 Author

Well, if you've set up your back-end properly, they won't be able to do that