I need to use a third party API call in my client side JS and I know one way is to use a server proxy(for eg. www.myserver.com/getdata/) which can call the API and return the result to the front end. My question is even if I use a server proxy, won't someone else be able to make use of my third party API key indirectly by calling my server proxy instead of directly calling the Third party.
Hiding a third party API key using Server Proxy
665 Views Asked by yamadoot At
1
There are 1 best solutions below
Related Questions in JAVASCRIPT
- Using Puppeteer to scrape a public API only when the data changes
- inline SVG text (js)
- An array of images and a for loop display the buttons. How to assign each button to open its own block by name?
- Storing the preferred font-size in localStorage
- Simple movie API request not showing up in the console log
- Authenticate Flask rest API
- Deploying sveltekit app with gunjs on vercel throws cannot find module './lib/text-encoding'
- How to request administrator rights?
- mp4 embedded videos within github pages website not loading
- Scrimba tutorial was working, suddenly stopped even trying the default
- In Datatables, start value resets to 0, when column sorting
- How do I link two models in mongoose?
- parameter values only being sent to certain columns in google sheet?
- Run main several times of wasm in browser
- Variable inside a Variable, not updating
Related Questions in API
- Google Sheets API - Append Request not working
- Is there really no product for docs that has these?
- How to show suggested content in response using Azure Cognitive Search?
- error message when closing current position in binance futures, using ccxt library
- How to filter API data in React Native
- I have fetched an API with JS, but the output looks really bad and I don't know how to fix it
- Session is not storing in react and Asp Dot Core Web API
- Apex charts not rendering series value, showing cannot map values of NULL
- Configure IIS to accept API calls only from API Manager, Deny from direct calls
- Problems with API return using the Axios library in NextJS
- How to query by Iteration in pyral?
- Is there a way to have a user enter a url query and have a single function filter a database?
- Cant get value in Vue from data
- Read stories/posts using instagram API
- Need To Make Minor Change To REST API Response
Related Questions in CLIENT-SIDE-SCRIPTING
- Parameterise variables in sitespeed.io scripting
- Why won't or statement work in a for loop?
- UI Action returning GlideAjax undefined in ServiceNow Workspace
- How to download and rename the list of google drive links on real time during the download process
- how to implement the Smartsheet API client-side code using Browserify?
- fetch() API with NodeJS server makes req.redirect() not working
- Accounting Application Self-Generated SerialNumber is Duplicated in PHP
- Uncaught TypeError: Failed to resolve module specifier "@microsoft/applicationinsights-web". Relative references must start with either "/", "./"
- How to work with python as client side scripting language
- How to update the data source in typeahead in JS?
- how to click action link menu option in JavaScript
- How to reload an iframe in Javascript?
- How to Refresh a page in JavaScript and redirect to controller's Action method with parameters
- Plotly Dash - not fully understanding the extendData feature with stacked barplot
- Debugging javascript for webforms project hosted on iis
Trending Questions
- UIImageView Frame Doesn't Reflect Constraints
- Is it possible to use adb commands to click on a view by finding its ID?
- How to create a new web character symbol recognizable by html/javascript?
- Why isn't my CSS3 animation smooth in Google Chrome (but very smooth on other browsers)?
- Heap Gives Page Fault
- Connect ffmpeg to Visual Studio 2008
- Both Object- and ValueAnimator jumps when Duration is set above API LvL 24
- How to avoid default initialization of objects in std::vector?
- second argument of the command line arguments in a format other than char** argv or char* argv[]
- How to improve efficiency of algorithm which generates next lexicographic permutation?
- Navigating to the another actvity app getting crash in android
- How to read the particular message format in android and store in sqlite database?
- Resetting inventory status after order is cancelled
- Efficiently compute powers of X in SSE/AVX
- Insert into an external database using ajax and php : POST 500 (Internal Server Error)
Popular # Hahtags
Popular Questions
- How do I undo the most recent local commits in Git?
- How can I remove a specific item from an array in JavaScript?
- How do I delete a Git branch locally and remotely?
- Find all files containing a specific text (string) on Linux?
- How do I revert a Git repository to a previous commit?
- How do I create an HTML button that acts like a link?
- How do I check out a remote Git branch?
- How do I force "git pull" to overwrite local files?
- How do I list all files of a directory?
- How to check whether a string contains a substring in JavaScript?
- How do I redirect to another webpage?
- How can I iterate over rows in a Pandas DataFrame?
- How do I convert a String to an int in Java?
- Does Python have a string 'contains' substring method?
- How do I check if a string contains a specific word?
I think the title is misleading, so i will try to answer the question stated in the body. Yes and no: They can make use of the third party API key indirectly, but you retain full control over what data they can see. You also can validate user input before it is handed to the third party. Imagine a payment API: Do you really want to have the user have control over the amount of money you want to charge them?
In other words: If the API key of the third party is supposed to be kept secret then it probably is not a good idea to have it on the client.