accounts
accounts copied to clipboard
Prune old sessions
The lifespan of expired sessions should be configurable. It can provide a useful log for user account activity. Keep the latest 10 sessions for example.
We should have some functions to clean all kinds of tokens (session, reset password tokens, etc ..). The user will then be able to use these functions in their own cron solution in order to clean the database.
to add to the context, this is how meteor is doing it https://github.com/meteor/meteor/blob/9343ce2a3e6cfe88d591b827f826ee3241f66b3b/packages/accounts-base/accounts_server.js#L1430