Suppose we have the following repository definition in gradle
repositories {
maven {
url 's3://my-top-secret-repo/releases'
credentials(AwsCredentials) {
accessKey 'MY_TOP_SECRET_ACCESS_KEY'
secretKey 'MY_TOP_SECRET_SECRET_KEY'
}
}
}
My question is, is there some way to someone reverse engineer the generated android APK and discover MY_TOP_SECRET_ACCESS_KEY and MY_TOP_SECRET_SECRET_KEY?