Skip to content

Conversation

@nrktkt
Copy link

@nrktkt nrktkt commented Feb 23, 2021

GET should never be used for logging in or out of an API.

  • GET is cached
    • you can't be sure you'll actually get a new log in/out and not a cached response
    • user credentials could be cached in the browser history or intermediate servers (!)

GET should never be used for logging in or out of an API. 
* GET is cached
   * you can't be sure you'll actually get a new log in/out and not a cached response
  * user credentials could be cached in the browser history or intermediate servers (!)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant