|
|
|
|
|
by stephth
5202 days ago
|
|
it wouldn't take a huge amount of skill to extract your client keys from an Android / iOS app: but as long as you've designed your ACL (access control list) correctly, it won't matter as your user will have to be logged in and authenticated to access sensitive objects. But it's possible to edit the ACL from a client. Isn't that a potential weakness? https://www.parse.com/docs/ios_guide#users-acls |
|