© 2026 Hedgehog Software, LLC

TwitterGitHubDiscord
More
CommunitiesDocsAboutTermsPrivacy
Search
Star
Setup for Free
C#C
C#•11mo ago•
3 replies
MrG

Is setting Jwt and fresh tokens as HTTP only cookies good ?

I'm building out authentication and currently send JWT and refresh tokens as HTTP only cookies and the backend validates the cookies instead of doing it through the bearer header is this an ok strategy?
C# banner
C#Join
We are a programming server aimed at coders discussing everything related to C# (CSharp) and .NET.
61,871Members
Resources
Recent Announcements

Similar Threads

Was this page helpful?

Similar Threads

Cookies and JWT for Authentication
C#CC# / help
11mo ago
❔ JWT Refresh tokens
C#CC# / help
3y ago
Invalidate JWT-Tokens on logout and password change.
C#CC# / help
3y ago
Can't add jwt to cookies
C#CC# / help
2y ago