tags:

views:

22

answers:

1

I've done a little googling but have been a bit overwhelmed by the amount of information. Until now, I've been considering asking for a valid md5 hash for every API call but I realized that it wouldn't be a difficult task to hijack such a system. Would you guys be kind enough to provide me with a few links that might help me in my search? Thanks.

+2  A: 

First, consider OAuth. It's somewhat of a standard for web-based APIs nowadays.

Second, some other potential resources -

A couple of decent blog entries:

A previous question:

Amber
Thanks for the help. I'll be sure to read up on this.
Scalawag