DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
There's no pull request to review for an autonomous agent. So what do you review?

There's no pull request to review for an autonomous agent. So what do you review?

1
Comments 1
4 min read
How to stop an AI agent from burning $47,000 in a loop nobody noticed.

How to stop an AI agent from burning $47,000 in a loop nobody noticed.

3
Comments 1
4 min read
# Why Most "Production-Ready" MCP Servers Actually Aren't

# Why Most "Production-Ready" MCP Servers Actually Aren't

Comments 1
12 min read
I published my first GitHub Marketplace Action: Aster Guard MCP

I published my first GitHub Marketplace Action: Aster Guard MCP

Comments
3 min read
After an agent deleted a production database, I mapped what actually stops these failures

After an agent deleted a production database, I mapped what actually stops these failures

1
Comments
3 min read
The Commodity-Backed Standard (2041–2042): HSM Timing Attacks and Entanglement-Based Verification

The Commodity-Backed Standard (2041–2042): HSM Timing Attacks and Entanglement-Based Verification

Comments
7 min read
Spring Security 7: MFA, Modular Config, and What Breaks

Spring Security 7: MFA, Modular Config, and What Breaks

Comments
4 min read
Free SSL Certificate Checker — verify expiry, issuer, and chain for any domain

Free SSL Certificate Checker — verify expiry, issuer, and chain for any domain

Comments
1 min read
I fuzzed my own Supabase RLS — and found a cross-tenant leak

I fuzzed my own Supabase RLS — and found a cross-tenant leak

2
Comments
2 min read
Claude Code Security: Permissions, Prompt Injection, and Secrets

Claude Code Security: Permissions, Prompt Injection, and Secrets

Comments
5 min read
AINAScan: Scan Your Entire Project (ZIP/Folder) for 48 Security + Vibe-Coding Bugs — Free

AINAScan: Scan Your Entire Project (ZIP/Folder) for 48 Security + Vibe-Coding Bugs — Free

Comments 2
4 min read
Where Are You Storing Your API Keys? (And Why Slack Isn't It)

Where Are You Storing Your API Keys? (And Why Slack Isn't It)

Comments 1
8 min read
Why Your Business Website Is a Security Risk: What OpenClaw Found in 500 SMB Audits

Why Your Business Website Is a Security Risk: What OpenClaw Found in 500 SMB Audits

Comments
3 min read
A complete tour of Qeli: a self-hosted, post-quantum VPN in Rust

A complete tour of Qeli: a self-hosted, post-quantum VPN in Rust

Comments
3 min read
How to implement field-level AES-256-GCM encryption in Spring Boot (and why we packaged it into one annotation)

How to implement field-level AES-256-GCM encryption in Spring Boot (and why we packaged it into one annotation)

Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.