Nice article. If the JWT is being creating and sent from the front-end (Cognito) is there a way to determine if it's been tampered with? The signature is not sent in the JWT.

gravity well (Rob Tomlin)
gravity well (Rob Tomlin)

Written by gravity well (Rob Tomlin)

Software Engineering Manager. Explorer, learner, teacher, and more

No responses yet