Slide 11
Slide 11 text
Client-side Sessions
Don’t trust the user to store sensitive information
Don’t trust information provided by the user
Don’t store sensitive information with an untrusted party
Don’t use cookies to store sensitive data
(If you are using cookies, use secure cookies - but only store identifiers)