Skip to content

sufeedurl exposing public aws s3 ? #2301

Answered by zorgiepoo
brduffy asked this question in Q&A
Discussion options

You must be logged in to vote

Why is that a security risk? If your application makes a request to download a file you can’t just hide that request. You can hide it from your info.plist but this is not a real sense of security because users can still sniff the request if they want.

The way for it to be secure is it shouldn’t matter if anyone can retrieve your feed URL or app download URL and there shouldn’t be anything sensitive in there.

Replies: 3 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Answer selected by brduffy
Comment options

You must be logged in to vote
1 reply
@zorgiepoo
Comment options

Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants