3 ms·Isn't JWT a modern alternative to CSRF tokens?by mrmagooey 9y agoIsn't JWT a modern alternative to CSRF tokens?vmasto 9y agoIt's not. If you think it is you probably store JWT unsafely instead of in an httpOnly secure cookie.hawkweed 9y agoWhy do you think storing JWT in secure cookie is only secure solution?