4 ms·
Currently we are working on improving our security by encrypting user data like config files. Then we would store the password for decrypting these data on the
by _query 12y ago
Currently we are working on improving our security by encrypting user data like config files. Then we would store the password for decrypting these data on the client. We would only decrypt these things when required (e.g. when deploying). Note that this is currently only a concept and not implemented yet.
Otherwise the same applies to GitHub: If GitHub gets hacked, your application details will also be compromised.
> Aside from all that, congrats on shipping! It's an important milestone.
Thanks :)
- encoderer 12y ago> Otherwise the same applies to GitHub: If GitHub gets hacked, your application details will also be compromised. Right, which is why you don't put your credentials in your source code on Github. This is common practice and one you seem to accommodate in your product, so I know you're very familiar with it... I hope you guys are transparent about these sort of things, it will mean a lot to your adoption rate I think. A lot of people out there who could be interested in a tool like this if they felt comfortable with the security implications.