Whats the difference between token validation and app check for security wise? I think both are secure correct? Should I use app check or should I use verify id token with Bearer? Or maybe use both of them like this:
app.post("/signup", [appCheckVerification, validateFirebaseIdToken], (request, response) => {