Book Image

Meteor Cookbook

By : Isaac Strack
Book Image

Meteor Cookbook

By: Isaac Strack

Overview of this book

Table of Contents (19 chapters)
Meteor Cookbook
Credits
About the Author
About the Reviewers
www.PacktPub.com
Preface
Index

Hiding data with façades


Some of our security (and performance) problems can be resolved through limiting access to certain fields and records in our data collections, for example, if the owner field of a record isn't sent to the client, a potential hacker will never be able to get the userId value of another user. Likewise, if only records belonging to a certain userId, or ones marked for sharing, are passed to the client, private records can stay private and visible only to the user that created them. This recipe will show you how to create a façade to limit fields and records being sent to the client.

Getting ready

Please complete the Securing data transactions with allow and deny recipe found in this chapter, including the additional deny callback functions found in the There's more… section. Once completed, and your Meteor app is running, you are ready to use this recipe.

How to do it...

We are going to modify the publish function on the server so that it only returns records that are...