Revoke refresh token on logout for enhanced session security

This commit is contained in:
K
2025-07-03 03:21:53 +05:30
parent 31f13b980b
commit 9cb9c67b09
2 changed files with 24 additions and 13 deletions
@@ -39,4 +39,9 @@ public class RefreshTokenService {
public boolean isExpired(RefreshToken token) {
return token.getExpiryDate().isBefore(Instant.now());
}
public void deleteByUser(User user) {
refreshTokenRepo.deleteByUser(user);
}
}