You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The idea behind this feature is to have a key that only has access to cloud code functions.
Why? So that you can protect all other routes from being publicly available and to force all users actions through cloud code which gives the developer more control over what is and isn't allowed.
I know CLPs can have a similar effect but I would prefer if an outside user didn't even get that close to the database. Client side Javascript is just too insecure and the files API allows people to just upload whatever they want unrestricted.
The text was updated successfully, but these errors were encountered:
The idea behind this feature is to have a key that only has access to cloud code functions.
Why? So that you can protect all other routes from being publicly available and to force all users actions through cloud code which gives the developer more control over what is and isn't allowed.
I know CLPs can have a similar effect but I would prefer if an outside user didn't even get that close to the database. Client side Javascript is just too insecure and the files API allows people to just upload whatever they want unrestricted.
The text was updated successfully, but these errors were encountered: