Using Realm Studio to connect to a Realm Object Server, why is it possible to leave the username and password fields blank, yet be authenticated as an admin? I’ve done this with a few different ROS instances. How do I disable this security hole when I go to production?
Anyone else experiencing this behavior? It seems like a huge security hole.
@chad.gilbert You can customize the index.ts to specify an auth provider or remove non-secure ones
Thanks Ian, that’s what I was looking for.