Skip to content
This repository has been archived by the owner on Nov 20, 2023. It is now read-only.

Is it secure to store API keys on the customer with unauthenticated_read_customers? #167

Open
achadee opened this issue Jun 8, 2021 · 0 comments

Comments

@achadee
Copy link

achadee commented Jun 8, 2021

Hi there,

We have an API that we want to integrate with our shopify customers. As far as I can see it is secure to store the metafields, because to access the metafields you need to provide a shopify customer access token.

Can you confirm if there are any security vulnerabilities.

thanks .

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant