Device Bound Session Credentials (DBSC) for Node.js — middleware that binds session cookies to a hardware TPM key to stop cookie theft, with a Web Crypto polyfill for Firefox & Safari.
-
Updated
Jun 29, 2026 - TypeScript
Device Bound Session Credentials (DBSC) for Node.js — middleware that binds session cookies to a hardware TPM key to stop cookie theft, with a Web Crypto polyfill for Firefox & Safari.
An experimental Go implementation of the Device Bound Session Credentials (DBSC) protocol for securing web sessions against cookie theft.
Device Bound Session Credentials (DBSC) for Symfony: protect sessions from cookie theft with hardware-bound keys.
Add a description, image, and links to the device-bound-session-credentials topic page so that developers can more easily learn about it.
To associate your repository with the device-bound-session-credentials topic, visit your repo's landing page and select "manage topics."