Christian
CCConvex Community
•Created by Christian on 2/10/2024 in #support-community
How is mutation authentication supposed to work?
In this template https://www.convex.dev/templates/nextjs-app-router
in the posts.ts inside the convex folder there is this code
There is no check for what user is running this code and seemingly no safe guards against a bad actor trying to post as another user.
Am I missing something or is there more to add for a production ready app?
17 replies