Paseto is a Secure Alternative to the JOSE Standards (JWT, etc.)
Many developers responded to our post with the same question: “What should we use instead of JWT?” Today, I’m happy to announce a viable replacement.
That’s it. There are no levers to pull, buttons to pull, or knobs to fiddle with. You don’t have to worry about the complexity required to use RSA safely. You don’t have to worry if the public key for a given message is even on the curve. Paseto is simple, obviously secure, solves 99% of the use cases for JSON Web Tokens. There is no guesswork; the cryptography aims to be boring.