向公众公开 Firebase apiKey 是否安全?
Firebase Web-App指南指出,我应该将给定的放在我的Html中以初始化Firebase:apiKey
// TODO: Replace with your project's customized code snippet
<script src="https://www.gstatic.com/firebasejs/3.0.2/firebase.js"></script>
<script>
// Initialize Firebase
var config = {
apiKey: '<your-api-key>',
authDomain: '<your-auth-domain>',
databaseURL: '<your-database-url>',
storageBucket: '<your-storage-bucket>'
};
firebase.initializeApp(config);
</script>
通过这样做,可以接触到每个访问者。apiKey
该密钥的目的是什么,它真的意味着公开吗?