Skip to content
This repository has been archived by the owner on Nov 20, 2023. It is now read-only.
This repository has been archived by the owner on Nov 20, 2023. It is now read-only.

Is it secure to store API keys on the customer with unauthenticated_read_customers? #167

Open

Description

Hi there,

We have an API that we want to integrate with our shopify customers. As far as I can see it is secure to store the metafields, because to access the metafields you need to provide a shopify customer access token.

Can you confirm if there are any security vulnerabilities.

thanks .

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions