Hiding Secret Keys in Your Flutter App: Comprehensive Guide and Best Practices

  Рет қаралды 3,997

Snehasis Ghosh

Snehasis Ghosh

Күн бұрын

Пікірлер: 20
@ozayed5580
@ozayed5580 Жыл бұрын
You forgot to mention that we have to add .env to .yaml file as Assets, which is mentioned in the official documentation. but thanks for the video
@Snehasis4321
@Snehasis4321 Жыл бұрын
Yes, you are right, just skipped that part while editing.
@realistic3
@realistic3 7 күн бұрын
Thanks
@christianmarpert3844
@christianmarpert3844 Жыл бұрын
Hi, thks for your video! didnt know about that package so far. was just wondering, if that .env file will be shipped to the client, so it could be exploited via reverse engineering?
@Snehasis4321
@Snehasis4321 Жыл бұрын
It is hard but it is still possible to get the key,values using reverse engineering . We can use encryption and decryption techniques on the .env values to make them more secure and difficult to hack.
@dazlingwiz
@dazlingwiz 11 ай бұрын
Great video. Is it necessary to print in the init state?
@Snehasis4321
@Snehasis4321 11 ай бұрын
No not required , just use for testing.
@dazlingwiz
@dazlingwiz 11 ай бұрын
thought so.. thanks for the video@@Snehasis4321
@mohammedsolyman3891
@mohammedsolyman3891 10 ай бұрын
thank you very much
@juanamayaduarte8975
@juanamayaduarte8975 11 ай бұрын
But, it's still plain text storage. How could you deal with reverse engineering attacks?
@Snehasis4321
@Snehasis4321 11 ай бұрын
you can use encryption and decryption techniques to hide the keys. if hacker get the .env file will be difficult to find the exact keys.
@somnathdas8922
@somnathdas8922 Жыл бұрын
Hi Snehasis are you from kolkata? Can you make a tutorial of voice room, live stream with webrtc. If you will do than It will be really helpful for us.
@Snehasis4321
@Snehasis4321 Жыл бұрын
Ok i will do it.
@somnathdas8922
@somnathdas8922 Жыл бұрын
@@Snehasis4321 Snehasis, I know Flutter, React, and React Native but I don't know about Appwrite after going through your tutorial I realised It's the same as Firebase. And you explained everything perfectly.
@Snehasis4321
@Snehasis4321 Жыл бұрын
@@somnathdas8922 yes it is the same , you can also say an alternative of firebase.
@chrislamont7529
@chrislamont7529 2 ай бұрын
Sorry but this is not hiding anything from anyone.
@Snehasis4321
@Snehasis4321 2 ай бұрын
What problem are you facing?
@Glitcheverywhere
@Glitcheverywhere Ай бұрын
​@@Snehasis4321Did you do any research about this package before making this video? The env file located on assets comes with your built in apk which is easily accessible from app like apkeditor on.
@Glitcheverywhere
@Glitcheverywhere 24 күн бұрын
@@Snehasis4321 ​Do a proper resarch before creating content. The dotenv is not secure to store secrect keys. When you build apk The ".env" file come with android apk assets. So anyone can access or see the secret keys from the .env file with app like "ApkEditor"
🚀 Mastering Email Sending in Flutter: A Step-by-Step Guide!
12:05
Snehasis Ghosh
Рет қаралды 3,6 М.
Your API Keys are NOT SAFE in a native app 🤬
9:26
Simon Grimm
Рет қаралды 14 М.
Мен атып көрмегенмін ! | Qalam | 5 серия
25:41
Quando eu quero Sushi (sem desperdiçar) 🍣
00:26
Los Wagners
Рет қаралды 15 МЛН
Support each other🤝
00:31
ISSEI / いっせい
Рет қаралды 81 МЛН
How to Hide & Protect API Keys in Your Android App (Reverse Engineering)
10:13
5 JavaScript API Key Mistakes (and how to fix them)
12:49
James Q Quick
Рет қаралды 80 М.
Top 30 Flutter Tips and Tricks
6:50
Flutter Mapp
Рет қаралды 584 М.
10 common mistakes with the Next.js App Router
20:37
Vercel
Рет қаралды 242 М.
Reverse Engineering Obfuscated Flutter App
38:54
FatalSec
Рет қаралды 4,3 М.
5 Steps to secure your next Flutter App
17:59
AB Satyaprakash
Рет қаралды 11 М.
AI Is Making You An Illiterate Programmer
27:22
ThePrimeTime
Рет қаралды 257 М.
Мен атып көрмегенмін ! | Qalam | 5 серия
25:41