Add extra security to your SPA with DPoP and FusionAuth
If you're forced to authenticate your users in a frontend-only situation, you're opening your application up to a variety of attack vectors. Many single-page...
September 4, 2026
Tags
If you're forced to authenticate your users in a frontend-only situation, you're opening your application up to a variety of attack vectors. Many single-page...
September 4, 2026

Of all possible browser-based OAuth architectures, the Browser-Based OAuth Client (BBOC) pattern is the least secure. Despite this, BBOC remains the most...
June 3, 2026

This article discusses the dangers of storing OAuth tokens in the browser or on a client-side device – a common pattern in serverless architectures like...
June 30, 2025
Showing 1 to 3 of 3 results
Get updates on techniques, technical guides, and the latest product innovations coming from FusionAuth.