Then, after you go on your profile, it just accesses the knowledge of whoever is stored while in the “person” variable, with no employing any encoded session ID or token or anything at all to validate that the value on the “user” variable was basically the person who had logged https://prohactive.com