A 24-hour token expiration refers to a security mechanism where authentication tokens, which are generated after successful login or authentication, have a limited lifespan of 24 hours. Once this period elapses, the token becomes invalid and cannot be used for any further authentication attempts.
โ
The purpose of implementing a 24-hour token expiration is to ensure periodic reauthentication and enhance system security. By setting a time-based expiration for tokens, the system enforces users to reauthenticate within a reasonable timeframe. This helps mitigate the risks associated with prolonged sessions and unauthorized access to sensitive information or functionalities.
โ
โ
Please note:ย A 24-hour token expiration is applied only in the web version of the application. For the mobile version, ApprovalMax supports setting up a PIN/ biometric.