I am interested in the security aspect of the Firebase .plist configuration file that is given to you during configuration. This file counties sensitive information.
Should this file be protected? Because in the examples this file located in root of the project and could be easily taken from .ipa files.
Example of the GoogleService-Info.plist
file: