DEV Community

# authentication

User authentication mechanisms

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
JWT Hardening Checklist: Beyond 'Use HS256'

JWT Hardening Checklist: Beyond 'Use HS256'

Comments
6 min read
JWT Storage: LocalStorage or HttpOnly Cookie?

JWT Storage: LocalStorage or HttpOnly Cookie?

1
Comments
9 min read
Information Bites : Azure Resource Hierarchy

Information Bites : Azure Resource Hierarchy

Comments
1 min read
How to handle hardware attestation without locking out real users

How to handle hardware attestation without locking out real users

Comments
5 min read
The 946-Millisecond Tax: Migrating API Key Auth from Bcrypt to HMAC-SHA256

The 946-Millisecond Tax: Migrating API Key Auth from Bcrypt to HMAC-SHA256

Comments
9 min read
Stop Storing JWTs in localStorage: A Security Guide for Web Developers

Stop Storing JWTs in localStorage: A Security Guide for Web Developers

1
Comments
3 min read
Laravel Now Has Native Passkeys: A Complete Guide to laravel/passkeys

Laravel Now Has Native Passkeys: A Complete Guide to laravel/passkeys

Comments
9 min read
The Auth0 Pricing Trap: Why Upgrading to Paid Gives You Less

The Auth0 Pricing Trap: Why Upgrading to Paid Gives You Less

Comments
3 min read
How Login Jails Can Dramatically Improve Your Application Security

How Login Jails Can Dramatically Improve Your Application Security

5
Comments
3 min read
Passkey vs Password: Are Passkeys Safer Than Passwords? (2026)

Passkey vs Password: Are Passkeys Safer Than Passwords? (2026)

Comments
9 min read
Auth in Next.js SaaS starters: redirect loops, OAuth callbacks, magic links, and session drift

Auth in Next.js SaaS starters: redirect loops, OAuth callbacks, magic links, and session drift

1
Comments
5 min read
JWT Authentication in ASP.NET Core: Common Mistakes (And How to Avoid Them)

JWT Authentication in ASP.NET Core: Common Mistakes (And How to Avoid Them)

5
Comments
6 min read
Flutter Dio Token Refresh: Fixing the Race Condition Most Tutorials Miss

Flutter Dio Token Refresh: Fixing the Race Condition Most Tutorials Miss

Comments
8 min read
The One-Character OAuth Bug That Broke Our API

The One-Character OAuth Bug That Broke Our API

Comments
2 min read
OAuth 2.0 + PKCE: Why OAuth Alone is Not Enough to Secure Your API

OAuth 2.0 + PKCE: Why OAuth Alone is Not Enough to Secure Your API

1
Comments
1 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.