TransWikia.com

Is it a bad practice to store my user's ObjectId in a JWT in the sub claim?

Information Security Asked on November 6, 2021

Is it a bad practice to store my user’s ObjectId in a JWT in the sub claim?
I could create an alternate UUID field in the user database and use this instead, but I wondered if I should?

I use this sub claim in both the refreshToken and accessToken.

Add your own answers!

Ask a Question

Get help from others!

© 2024 TransWikia.com. All rights reserved. Sites we Love: PCI Database, UKBizDB, Menu Kuliner, Sharing RPP