chr7z·12 ปีที่แล้ว·discussThere is a tool for moving API keys out of the source: Keystok stores encrypted API keys and tokes in a cloud service and lets the App / client retrieve them during runtime.Its not just about moving keys out of the source, but about getting rid of local config files altogether. Related post on their blog: http://blog.keystok.com/why-i-stopped-using-local-config-fil...Disclosure: I'm a developer at Keystok.
chr7z·12 ปีที่แล้ว·discuss+1 for client-side encryption in general^^. Commonkey and Keystok.com both work well, CK just has a nicer UI and Keystok a better API.
Its not just about moving keys out of the source, but about getting rid of local config files altogether. Related post on their blog: http://blog.keystok.com/why-i-stopped-using-local-config-fil...
Disclosure: I'm a developer at Keystok.