Developers must have in mind:

  • Ensure that users cannot obtain or get wrong sessions for other users.

  • Validate tokens

  • Validate signatures and certificates.

  • Not to create unnecessary load on the system.

Services that are not following these guidelines can be disabled by Auðkenni.