Skip to main content

Understanding the Functioning of Tokens and Refresh Tokens

This article explains how Edusign secures your session and keeps your connection active through access tokens (tokens) and renewal tokens (refresh tokens). 🔐

Maxime Alaphilippe avatar
Written by Maxime Alaphilippe
Updated this week

Edusign uses a Token (valid for 8 hours) to authorize your actions and a Refresh Token (valid for 4 weeks) to renew your connection automatically without having to re-enter your credentials.


🌐 The Token: Your Temporary Access Proof

Lorsque vous vous connectez à l'application Edusign, le système vous délivre un Token (jeton d'accès). Ce jeton agit comme un badge numérique prouvant que vous êtes autorisé à accéder à votre compte.

  • Validity Duration: 8 hours.

  • Sécurité : L'expiration automatique limite les risques d'accès non autorisé si votre session est compromise.

♻️ The Refresh Token: For Seamless Connection

To save you from having to manually reconnect every 8 hours, Edusign uses a Refresh Token (renewal token).

  1. Functioning: When the Token expires, the Refresh Token automatically generates a new access token in the background, without interrupting your navigation.

  2. Validity Duration: 4 weeks

  3. Storage: It is stored securely on your device.

Do not confuse the Token (immediate and short access) with the Refresh Token (long-term renewal key)! ⏱️

🔒 Enhance Security with Biometrics

You can enhance the protection of your Refresh Token by enabling biometrics in your app's settings.

  • Use: Once enabled, using the renewal key will require your fingerprint or Face ID.

  • Avantage : Même si votre téléphone est déverrouillé, personne d'autre que vous ne pourra renouveler la session de l'application !


To learn more, visit our help center.

💬 If you don't find what you're looking for, contact us via chat. 💬

Did this answer your question?