Edit
Report post Feedback

What is the purpose of the form token?

My limited understanding is that the tokens purpose is to identify a unique user at a unique point in time and to disguise the form token information. Then everything becomes fuzzy. Here are my 3 open questions: When is the best time to "check" the form token for security purposes? How do I check it? When, if ever, do I "destroy" the form token?

What is a CSRF token?

This is where the CSRF token comes in. A CSRF token is a random, hard-to-guess string. On a page with a form you want to protect, the server would generate a random string, the CSRF token, add it to the form as a hidden field and also remember it somehow, either by storing it in the session or by setting a cookie containing the value.

What is SRM token & how does it work?

The SRM utility and governance token enables users to receive discounts on protocol fees and voting rights; 100% of exchange fees flow back to SRM via buy-and-burn, staking rewards, and ecosystem grants. Who Are the Founders of Serum?

What is a refresh token?

That is, a refresh token is a credential artifact that lets a client application get new access tokens without having to ask the user to log in again. In the diagram above, SPA = Single-Page Application; AS = Authorization Server; RS = Resource Server; AT = Access Token; RT = Refresh Token.

The World's Leading Crypto Trading Platform

Get my welcome gifts