DEV Community

Security

Hopefully not just an afterthought!

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
I added TOTP 2FA to my Django app in ~40 lines and no 2FA library — but one line decides whether it's real

I added TOTP 2FA to my Django app in ~40 lines and no 2FA library — but one line decides whether it's real

Comments
4 min read
Where the Hell Do I Put This Token? Syncing Claude Code Secrets to 3 Macs with the 1Password CLI

Where the Hell Do I Put This Token? Syncing Claude Code Secrets to 3 Macs with the 1Password CLI

Comments
9 min read
7 Days Until MiCA. Your Agents Cannot Prove Who They Are to Each Other.

7 Days Until MiCA. Your Agents Cannot Prove Who They Are to Each Other.

Comments
4 min read
The support loop is fine, right up until crypto goes mainstream.

The support loop is fine, right up until crypto goes mainstream.

Comments
2 min read
Our graph database was abandoned upstream — here's the 6-line migration (EngramGraph 0.3.0)

Our graph database was abandoned upstream — here's the 6-line migration (EngramGraph 0.3.0)

Comments 1
2 min read
I built a local-only credential vault because every dev team I worked with stored PATs in Notepad

I built a local-only credential vault because every dev team I worked with stored PATs in Notepad

Comments
2 min read
Governance and Detection Tell You What Happened. Design Determines Whether It Matters.

Governance and Detection Tell You What Happened. Design Determines Whether It Matters.

Comments
5 min read
Three Incidents. Four Layers. One Week.

Three Incidents. Four Layers. One Week.

Comments
3 min read
I scanned 50 AI-generated repos. 5 critical bugs per file on average — all missed by linters.

I scanned 50 AI-generated repos. 5 critical bugs per file on average — all missed by linters.

Comments
4 min read
JWT Authentication Confused Me. Then I Built It From Scratch

JWT Authentication Confused Me. Then I Built It From Scratch

Comments
6 min read
Your AI agent can probably delete your database. I built a 60-second way to check (open source)

Your AI agent can probably delete your database. I built a 60-second way to check (open source)

Comments 1
2 min read
Vaultwarden-Plus: A Password Manager Built for Operators

Vaultwarden-Plus: A Password Manager Built for Operators

Comments
5 min read
Docker Rootless Mode Security Hardening Checklist

Docker Rootless Mode Security Hardening Checklist

Comments
11 min read
272 Experts Named the Risks. Nobody Named the Mechanisms.

272 Experts Named the Risks. Nobody Named the Mechanisms.

1
Comments
8 min read
Zero Trust Security in Production: Identity, OPA, Vault, mTLS & Audit Logging — A Complete Reference

Zero Trust Security in Production: Identity, OPA, Vault, mTLS & Audit Logging — A Complete Reference

Comments
7 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.