I am new to JAM stack. The web applications in JAM stack (I am hosting my app in Netlify ) will be completely relied upon APIs for storing info and authentication, right?
So my concern is that I would have to expose all of my API keys publically in my JavaScript code. Anyone who knows how to open up the site source could see my API secrets and can be easily misused.
I was reading through an open issue in JAM stack repo here on Github
How can I secure my API Keys from eavesdropping and misuse?
What is the "best practice" in this case?
Thanks in advance