© 2026 Hedgehog Software, LLC

TwitterGitHubDiscord
More
CommunitiesDocsAboutTermsPrivacy
Search
Star
Setup for Free
SupabaseS
Supabase•4y ago•
1 reply
Wickey

Is the JWT stored in local storage?

Hey, it looks to me (just investigated js library) that under the hood for Auth, it's authenticating and then storing that jwt returned in local storage for its entirety until it's invalid and you need to login again.

Is this a correct interpretation? If so, I thought it wasn't secure to do so as it creates XSS risks? Thanks in advance, just learning!
Supabase banner
SupabaseJoin
Supabase gives you the tools, documentation, and community that makes managing databases, authentication, and backend infrastructure a lot less overwhelming.
45,816Members
Resources

Similar Threads

Was this page helpful?
Recent Announcements

Similar Threads

Auth token is stored in local storage?
SupabaseSSupabase / help-and-questions
3y ago
Why are Supabase Access Tokens stored in local Storage?
SupabaseSSupabase / help-and-questions
2mo ago
JWT authenticated storage example
SupabaseSSupabase / help-and-questions
4y ago
Local Storage Questions
SupabaseSSupabase / help-and-questions
4y ago