HN threads from 2016-2018 complain that JWT gives us too much rope with which to hang ourselves, and some advocate for alternatives like PASETO instead. Today it's not clear however that any alternatives like PASETO have crossed the threshold of adoption to warrant preference over JWT when choosing a stateless auth token solution.
What solution would you choose today for stateless auth tokens?
2018: https://news.ycombinator.com/item?id=18353874
https://news.ycombinator.com/item?id=16517412
2017: https://news.ycombinator.com/item?id=14290114
https://news.ycombinator.com/item?id=13865459
2016: https://news.ycombinator.com/item?id=11929267
https://news.ycombinator.com/item?id=11895440
2015: https://news.ycombinator.com/item?id=9616425
2014: https://news.ycombinator.com/item?id=8283006