Never Send Credentials or Secrets Via a Redirect Read more about Never Send Credentials or Secrets Via a Redirect
Avoid HTTP Basic Authentication When Possible Read more about Avoid HTTP Basic Authentication When Possible
Avoid 'Remember Me' Authentication Cookies Read more about Avoid 'Remember Me' Authentication Cookies