Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I believe the distinction is that with PASETO, the versions are by specification not backwards compatible.

So, if my application supports v2 and you "forge" a v1 token, my application will not validate it.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: