person
Rafał Rothenberger
recommends
Recommends Argon2id as Devise replacement when pepper is needed.
person
Rafał Rothenberger
recommends
Explicitly recommends it for API token authentication.
person
Rafał Rothenberger
recommends
Recommends the OWASP cheat-sheet series for web application security.
person
Rafał Rothenberger
recommends
Advocates storing refresh tokens in HttpOnly Secure SameSite cookies.