Discussion on: PKCE authenticaton for Nuxt SPA with Laravel as backend

thorbn profile image

Can other users not just change the userId in the local cookie to something else and then get other users info from the api? In my case todos

Thread Thread
stefant123 profile image
StefanT123 Author

Well, if you've set up your back-end properly, they won't be able to do that