DEV Community

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Your AI Coding Agent Can Read .env — Here’s How to Stop Secrets Before They Reach the Cloud

Your AI Coding Agent Can Read .env — Here’s How to Stop Secrets Before They Reach the Cloud

1
Comments 2
5 min read
CLAUDE.md rule vs PreToolUse hook: both held 5 of 5, then the user said 'I authorize it'

CLAUDE.md rule vs PreToolUse hook: both held 5 of 5, then the user said 'I authorize it'

Comments 4
13 min read
Using SHA256 to Build Trustworthy Data Portals in Brazil

Using SHA256 to Build Trustworthy Data Portals in Brazil

Comments 1
4 min read
The secret was correct. The first byte wasn't.

The secret was correct. The first byte wasn't.

4
Comments 2
3 min read
I built a Windows security suite that photographs anyone who guesses your password wrong — ATLOCK v4

I built a Windows security suite that photographs anyone who guesses your password wrong — ATLOCK v4

13
Comments 1
3 min read
Read-Only Kubernetes Access for AI Agents: Why "Please Don't Delete Anything" Isn't a Security Boundary

Read-Only Kubernetes Access for AI Agents: Why "Please Don't Delete Anything" Isn't a Security Boundary

Comments 1
5 min read
The Most Dangerous File in Your Repo Might Be SECURITY.md

The Most Dangerous File in Your Repo Might Be SECURITY.md

Comments
5 min read
What 802.1X Actually Proves, and the Checkbox That Decides It

What 802.1X Actually Proves, and the Checkbox That Decides It

Comments
6 min read
52 security tools, one judgment layer, 35 seconds

52 security tools, one judgment layer, 35 seconds

Comments
4 min read
I Audited My Dead Side Projects. Some Weren't Dead.

I Audited My Dead Side Projects. Some Weren't Dead.

6
Comments
3 min read
Scoped Permissions vs Custody: Letting Software Act On-Chain Without Holding Your Keys

Scoped Permissions vs Custody: Letting Software Act On-Chain Without Holding Your Keys

Comments
4 min read
CĂłmo solucionar el error \"Enable JavaScript and cookies to continue\"

CĂłmo solucionar el error \"Enable JavaScript and cookies to continue\"

Comments
3 min read
Is npx @apexacc/cli safe? A technical breakdown of Apex Copilot

Is npx @apexacc/cli safe? A technical breakdown of Apex Copilot

Comments
2 min read
I Built an Open-Source SOC Web Recon & Hardening Dashboard with FastAPI & Vanilla JS

I Built an Open-Source SOC Web Recon & Hardening Dashboard with FastAPI & Vanilla JS

5
Comments 1
2 min read
From 52% to 99.57%: The 36 Hours After I Published My AI Security Gap Analysis

From 52% to 99.57%: The 36 Hours After I Published My AI Security Gap Analysis

Comments 2
6 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.