Skip to content

Verify facebook login message sent from client #18

@Bochenski

Description

@Bochenski

We should not trust that the client has not manipulated the facebook login message to gain access to others accounts. Need to verify the hash sent with the login message against our app secret.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions