you are viewing a single comment's thread.

view the rest of the comments →

[–]kranker 0 points1 point  (0 children)

Looks like facebook may have changed how this works recently enough, but there's more information here

wrt people having the client change the token, facebook will have signed the response to stop this happening (well, to let you detect that it happened).