If you went through the hands on lab for using ACS on your Windows Phone 7 application , you already know that saving the user the hassle to re-authenticate all the times entails a security tradeoff. Here there’s what I wrote in the lab’s instructions...