|
|
|
|
|
by saimiam
40 days ago
|
|
> other parts of the stack As a web developer, you’re the like the guy standing with a clipboard outside a fancy club checking if people requesting entry are allowed or not. Basically, level 1 security. If someone is not on the list, your job is to default to declining them access, not granting them access assuming level 2 security will handle them at a deeper layer. It’s possible that the teams you work with expect fuzzy behaviour from the website but that’s a choice, not a practice. |
|