Securing and Packaging the App
In the previous chapter, we deployed our app to tozo.dev, allowing users to use our web app via a browser on any device, and added monitoring so that we know when things go wrong.
In this chapter, we will focus on how we can keep our app secure, both in terms of the code we use and the methods users use to authenticate. We’ll also package our app so that users can use our app via the app stores.
It is important to view the app’s security as a continual process, whereby the practices and packages must be continually updated and improved. In this chapter, I’ll demonstrate my process for managing package updates, which you can adopt and improve upon. We’ll also adopt current best practices to secure the app.
We’ll also make a major change to support multifactor authentication. While this will allow users to opt-in for greater security, it will also show how to make large changes to the app; specifically, it will...