Articles for people who
ship the stack
Original rewrites on React, Node.js, TypeScript and AI — practical notes from the same engineering practice behind our operator software. Article bodies are in English.
Tagged: devsecops
Practical notes: A One-Character Bearer Token Was Enough to Break Into
Operable walkthrough of Practical notes: A One-Character Bearer Token Was Enough to Break Into: contracts, checks, and drop-in code slots for teams shipping this pattern.
1135 wordsRead articleNpm Supply Chain Attacks: How They Work and How to Defend Node.js
Explains how npm supply chain attacks like account takeovers, typosquatting, and dependency confusion work, plus concrete steps to harden Node.js installs.
1801 wordsRead articleWhy DevSecOps Becomes the New Bottleneck in the AI Coding Era
Explains how AI-generated code shifts software engineering's bottleneck from writing code to verifying it, making automated DevSecOps the critical layer of trust.
3306 wordsRead article
About these articles
Request a 24h estimate
Need the same stack in a production operator layer? Send the brief — estimate within 24 hours.