Hacker News new | ask | show | jobs
by eaigner 5201 days ago
What's the difference to the "clientKey" of Parse's SDK? The requests should be served over SSL anyway, so if your point is you don't want to distribute a key you got the same problem with Parse. You can obfuscate the key though.
1 comments

It doesn't matter whether you use SSL or not. If it's in your app, it can be found quite easily.

Parse provides you with a few different keys and also offers ACL functionality. I'm still not too crash hot on expecting the client to setup an ACL on their own objects though...

can you propose how an client can authenticate with this type of service without a key?