DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Implementing Row-Level Access Control

Implementing Row-Level Access Control

2
Comments 2
4 min read
Screen a name against the OFAC sanctions list in 3 lines (REST API, free tier)

Screen a name against the OFAC sanctions list in 3 lines (REST API, free tier)

Comments
6 min read
5 HIPAA Violations Hiding in Your Next.js Healthcare App Right Now

5 HIPAA Violations Hiding in Your Next.js Healthcare App Right Now

Comments
1 min read
I built training wheels for AI coding agents, then found a critical bug in them by pointing my code reviewer at them

I built training wheels for AI coding agents, then found a critical bug in them by pointing my code reviewer at them

Comments
4 min read
Catch expiring TLS certs and weak security headers in CI — with one small CLI

Catch expiring TLS certs and weak security headers in CI — with one small CLI

Comments
4 min read
LLM Guardrails Explained: Prompt Injection, PII Detection & Content Moderation

LLM Guardrails Explained: Prompt Injection, PII Detection & Content Moderation

Comments
5 min read
PolinRider keeps expanding, and the postinstall still lands on your runner

PolinRider keeps expanding, and the postinstall still lands on your runner

Comments
3 min read
Evident: Proving Digital Ownership Without Revealing Your Content

Evident: Proving Digital Ownership Without Revealing Your Content

Comments
2 min read
I Built a 100% Offline SAST Scanner That Finds What Semgrep and CodeQL Miss

I Built a 100% Offline SAST Scanner That Finds What Semgrep and CodeQL Miss

Comments
1 min read
Why We Open-Sourced Identity Lifecycle Management (ILM)

Why We Open-Sourced Identity Lifecycle Management (ILM)

1
Comments
3 min read
Why I Built an Adversarial Co-Generation Engine

Why I Built an Adversarial Co-Generation Engine

2
Comments
3 min read
The Execution Trace Is the Unit of Agent Trust

The Execution Trace Is the Unit of Agent Trust

1
Comments
9 min read
Hardening an MCP Server: What I Learned Building a Production-Ready Jira/Confluence Integration for Claude

Hardening an MCP Server: What I Learned Building a Production-Ready Jira/Confluence Integration for Claude

Comments
8 min read
Fake Email Signups Need Risk Tiers

Fake Email Signups Need Risk Tiers

1
Comments
4 min read
Applying SAST to Infrastructure as Code (Without TFSec)

Applying SAST to Infrastructure as Code (Without TFSec)

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.