- How to Create, Sign & verify a jwt 1 Candidate libs for jwt
- Pro: Well documented
- Pro: Actively Maintained
- Pro: Easy to access standard claims (exp, iss, ...)
- Pro: Many examples
- Pro: Allows embedding standard claims into custom claims
- Pro: Dates are compatible with
time.Time
- Pro: Over 3,000 stars on Github
- Pro: Protects against
alg=none
by default - Pro: Simple to handle Expired & NotYet cases
- Pro: Sources reference https://datatracker.ietf.org
- Pro: Support for arbitrary claims
- Pro: Supports alternative clocks (time provider)
- Con: No support for compact serialize
- Pro: support for arbitrary claims
- Pro: support for compact serialize
- Pro: Actively Maintained
- Pro: protects against
alg=none
by default - Pro: Supports alternative clocks (time provider)
- Pro: well documented
- Con: under 200 stars on Github
- Con: Abandonware
- Always select the algorithm to for parsing (don't let the token decide)