1. X
  2. Filip Skokan
Log inSign up
Filip Skokan
487 posts
user avatar
Filip Skokan
@_panva
Identity, OpenID Connect, OAuth 2.0, SSO, Authorization, Authentication, Technical Standards. Node.js core collaborator and TSC member.
Czech Republic
github.com/panva
Joined March 2019
132
Following
684
Followers
RepliesRepliesMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·US TIDA·Ads Info·© 2026 X Corp.
  • Pinned
    user avatar
    Filip Skokan
    @_panva
    May 8, 2021
    Software's conformance to standards and its certification is not the pinnacle to shoot for. It is the absolute lowest bar.
  • user avatar
    Filip Skokan
    @_panva
    Apr 3
    Did you move off of Node.js v20.x yet? There are only a couple weeks util its EOL. Save yourself the headache of scrambling to upgrade next year and jump straight to v24.x LTS
    226
  • user avatar
    Filip Skokan
    @_panva
    Apr 1
    Introducing CWS, CSS Web Signatures. A security token scheme that runs entirely in the browser's style engine. No JavaScript. No WebAssembly. No server-side computation. Spec + interactive demo: panva.github.io/CS24
    235
  • user avatar
    Filip Skokan
    @_panva
    Mar 13
    yay or nay?
    231
  • user avatar
    Filip Skokan
    @_panva
    Feb 4
    When it comes to JWTs issued for "yourself" the JWE format is far superior to JWS. Just let go of the HMAC JWS algorithms and use JWE direct encryption instead. You get confidentiality and it forces use of correct-length keys. await new jose.EncryptJWT > await new jose.SignJWT
    274
  • See @_panva's full profile

    Sign up
    Log in
ZW5kZW5yYWhheXU5QGdtYWlsLmNvbQ==