Infinity API key abuse #1513
Closed
forsakenquantum
started this conversation in
General
Replies: 2 comments
-
Same thoughts. Modded APKs are a thing, and there's a nonzero chance of people using your API key at cost to you without providing you revenue. Specially if this is the only third party client that survives. |
Beta Was this translation helpful? Give feedback.
0 replies
-
Thank you. I am constantly monitoring the API usage and by now there is no API usage abuse. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
I saw this topic come up on Lemmy, which I hadn't thought of before, and I wanted to make sure to flag it to @Docile-Alligator (hopefully they've already thought of it).
It's not terribly difficult to extract an API key from an APK. Is there any infrastructure in place to ensure that anybody who does that isn't able to use Infinity's API key as much as they want, running up a bill that Docile-Alligator has to pay?
I've really enjoyed using Infinity and appreciate all the effort and love that Docile-Alligator has put into it, and would hate to see them get abused by bad actors.
Beta Was this translation helpful? Give feedback.
All reactions