Previously, the API calls (e.g. retrieving all decks / deleting a deck) were param-based only (you only needed to send a username param + a deck ID for instance on DELETE saved_decks)
This change adds a cookie-based accessToken (from auth0) to all the headers in axios calls (GET, POST, DELETE) in order to provide an authorization mechanism for the API
Alongside https://github.com/lijim/monks-and-mages-db-service/pull/23, this PR sets forth the path for the game to use genuinely authenticated API calls.
Previously, the API calls (e.g. retrieving all decks / deleting a deck) were param-based only (you only needed to send a username param + a deck ID for instance on DELETE saved_decks)
This change adds a cookie-based accessToken (from auth0) to all the headers in axios calls (GET, POST, DELETE) in order to provide an authorization mechanism for the API