Stigg Product Updates logo

Product Updates

Back to Homepage Subscribe to Updates

Labels

  • All Posts

Jump to Month

  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • August 2022
  • July 2022
  • June 2022
Announcement
2 years ago

Hardening access to customer information in client-side applications

As part of the frontend integration with Stigg customer information is accessed using a Client API key which is publicly accessible to anyone. 

While the Stigg backend limits access to customer information to a minimum, additional security measures can be taken to ensure that the request is indeed from the requesting user.

We've added the ability to sign and verify the identity of requests to access customer information from the frontend. Under the hood, the mechanism leverages the HMAC SHA256 to sign the requests.

We recommend all customers to enable the hardening mechanism in their client-side applications.

More details about this security measure and how to enable it can be found here.

Avatar of authorOr Arnon