DEV Community

Discussion on: How safe is same-origin client-server communication?

Collapse
 
brandinchiu profile image
Brandin Chiu

Anything server related (databases, external services, architecture) should be sparingly released to any client.

Clients are unpredictable and easy to break into. A client that's safe today might not be safe tomorrow, and the attack surface is just too wide to really risk it.