gorilla/sessions may be useful to store the token on the server side
gorilla/sessions may be useful to store the token on the server side