Skip to content
Discussion options

You must be logged in to vote

unrelated, but you should NOT expose the refresh token to the client.

about the size limit, a cookie can only be 4096 bytes. until we implement something like chunking, you'll have to use an database adapter to overcome the limit.

See the docs disadvantages section https://next-auth.js.org/faq#json-web-tokens

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
1 reply
@SteveCookTU
Comment options

Answer selected by SteveCookTU
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Help
Labels
None yet
2 participants