Hello,
We use API Key on the frontend to load Vector Tiles. We would like to secure it in the best way. I understand that we can set referrers to allow only our domain to use it. But considering the fact that referrers can be forged, is it really a secure mechanism?
Does Esri's referrer checking mechanism use some kind of special check against forging?
What could you suggest for additional security?