#JacksonStorm
1 messages · Page 1 of 1 (latest)
👋 happy to help
the client_secret is only used to confirm a Payment/Setup Intent
there's no security issue with exposing it on the frontend
Right... Ok.
Is it normal that is exposed?
Any suggestions to hide it?
I fear customers will freak out.
is it being displayed in the UI?
yes this is expected and there's no risk
Ok... Seems strange.
I think my customers will report it as a security error .... "Client secret" doesn't seem expected
It has been used for quite sometime and no one ever came back with this feedback to be honest
let me know if you need any more help
Can I share full url with you here so you can eyes over
Make sure nothing else random injected?
yes please do
looks good
Superstar Tarzan.
Made my day.
let me know if you need any more help