Potential security problem with storing app id and app token inside app's code


As I understand it, by enabling Secure UUID the encrypted UUID as well as “app token” and “app id” is sent to the cloud and gets decrypted there. Furthermore, the “app id” and “app token” is stored inside application code. But I was wondering would it be potentially dangerous to store the “app token” and “app id” inside application code? Since my competitor can decompile my app and find my “app id” and “app token” and by having them he/she could do anything he/she was able to do with the case of using normal (unsecure) UUID.

Am I missing something? Any ideas?


same problem.
token and id are visible after decompiling.