Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Often you need only the session cookie. Everything else can go into the database indexed by that cookie. This is especially safe if the user has an account and won't lose the data if the cookie is lost.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: