Skip to content
Discussion options

You must be logged in to vote

Use rule-per-collection with request.auth checks. Allow users read/write only their own data via request.auth.uid == userId. Keep public data readable.

Replies: 1 comment

Comment options

maitamdev
Mar 5, 2026
Maintainer Author

You must be logged in to vote
0 replies
Answer selected by maitamdev
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
1 participant