4 ms·
you posted this in the chromium thread too and ... it's not relevant
by wehere1 9y ago
you posted this in the chromium thread too and ... it's not relevant
- berg43w2t3t 9y agoI think it might be relevant, this seems to indicate that google is hardcoding their API keys in the shipped chrome binaries. These exceeded, and broke functionality in the app. This seems like a bad security practice and it is very relevant to call it out here.
- NateyJay 9y agoThere's really no practical alternative but to ship binaries with baked in API keys. Maybe you dynamically provision API keys, but the binary needs a baked in permission to access that API to start with...
- captn3m0 9y agoso every release goes out with its own API key?
- dbbk 9y agoWell, they're obviously going to have to hardcode something into the binary, I think you're imagining an issue that doesn't exist.