6 articles with this tag

Our journey migrating from a custom auth solution to Lucia Auth v3, including OAuth integration challenges.

A deep dive into our TOTP-based 2FA implementation with backup codes and OAuth integration.

How we implemented a hierarchical RBAC system with five distinct user roles.

How we implemented automatic session timeout with warnings and graceful re-authentication.

Why client-side auth checks aren't enough, and how we protect routes at the server level.

The security measures we implement on every API endpoint.