It is good to put all my js code created with web sdk to file e.g index.php wich is visible for all site viewers
It is generally not recommended to include all your code, especially sensitive SDK credentials, in a file that is visible to all site viewers. Doing so can expose your Appwrite API keys or other sensitive information, making it vulnerable to potential security risks.
That is why I personally recommend working with env variables and different code files.
Ok so make env file that is not readable to other but for js is
ye or just separate your files. you would also need to think if everyone can access your code (if it's open source), how you can hide the important stuff which shouldn't be shared
Oh and I have one more question
I can do oauth2 via web sdk
Recommended threads
- Urgent Help
Hello Appwrite team, I urgently need your help. I am the founder of OnBuch, an EdTech application used by around 10,000 users in Cameroon. In the last two day...
- 1.9.5 Migration problem
1.9.5 migration problem after run migration command only openruntimes-executor
- Appwrite Sites deployment fails because ...
Appwrite Cloud Sites deployments are failing consistently for both GitHub and manual deployments. The build command completes successfully and packaging also c...