Writing rules for Google Cloud Firestore - My frustrations and how I managed it
Have you ever worked with GCF - Google Cloud Firestore and decided it is time to go live with your mobile app or your website but then Google notifies you that client access to your cloud firestore is not secure or that it will soon expire due to the time limit google provides for the testing phase during which you are not mandated to set security rules? At that time I always try to bypass this warning by extending the time limit and changing the version, which is like me saying; hey GCF, give me one more month, I will try to read up on how to write security rules before then and I will definitely set it up. One more month, I find myself extending again and again. What is the cost of not setting security rules? This could be very disastrous to your early startup or that wonderful project you hope to scale; you are opening the door wide for public access to all of the sensitive data in your domain. I thought about this and the fact that am taking my app from the development to publ...