v0.3.0 - Session tracking now in Authenticator * Added expiration for JWTs in Authenticator * Default is one hour * Can customize using exp parameter in initializer * Can override on a per JWT basis using get_exp method * All tokens now have a `"jti"` claim that can be used for immediate token revocation