Concerns Over App Store Integration Permissions and Security
Hi there, I am trying to get my App Store and Google Play store integrations set up, but there are some concerns from our team about privacy and security. Is there a way to reduce the scope of the permissions? From the Android engineer I’m working with:
I’m a little sketched out. It seems like they’re requesting access that is much too broad. The way other play store integrations work is that you create a service account and give it access to just the reviews. I think giving dovetail access to upload APKs feels like a security hole we should not open.