Ben Tossell
@bentossell · Community Lead, Product Hunt
This is pretty sweeeeet
17sharetweet・
Jarred Sumner
@jarredsumner
@bentossell Thanks!
2sharetweet・
Ben Tossell
@bentossell · Community Lead, Product Hunt
@jarredsumner Can you tell us about how it works technically?
5sharetweet・
Jarred Sumner
@jarredsumner
@bentossell Sure!
Websites use cookies to keep you logged in across pages. This just takes the cookies used by the current domain, generates a random password, encrypts those cookies with that random password, and then sends the encrypted cookies without the password off to the server.
Then, when another user goes to your access URL, the chrome extension takes the password from the URL (which is what shows up in the #), it decrypts the cookies, and then adds them to Chrome's cookie jar.
It'd be way easier honestly to just store all the cookies on the server without this encryption, but a product like this is dangerous without a lot of thought put into security. It's worth the extra effort on my part to do right by users.
79sharetweet・
Ben Tossell
@bentossell · Community Lead, Product Hunt
@jarredsumner yeah definitely and I think lots of people will appreciate that. I was asking because of the cookies and security concerns to be honest. Thanks!
7sharetweet・
oty
@otymix · @oneTapVote | working on smthg new 🤐
@jarredsumner @bentossell Very intresting tool ! im just shocked being conscious of the value of our cookies, and the fact it can be used for Login case .. thanks for your clear explanation !
3sharetweet・
Jarred Sumner
@jarredsumner
@otymix you're welcome! Let me know if you have any questions or feedback on AccessURL
2sharetweet・
Mike Desjardins
@mdesjardins · Made https://www.remotelyawesomejobs.com
@jarredsumner that is damned clever. So it's kinda sorta like shared secure side-jacking but used for good.
4sharetweet・
Sergio Flores
@byoigres · Software Developer
@jarredsumner this is pretty cool.
2sharetweet・
Jarred Sumner
@jarredsumner
@byoigres thanks!
1sharetweet・
Jarred Sumner
@jarredsumner
@mdesjardins :)
1sharetweet・
sam hefnawy
@samhefnawy · Country Manager, Visionary Strategist
@jarredsumner @bentossell how to make sure the security is okay? what you may be able to do then?
1sharetweet・