derek pfp
derek
@derek
Not sure if this was even the issue, but a friendly reminder out there for folks (including myself): regularly audit what environment variables appear in client-side code. NEXT_PUBLIC_*, for instance. Vibe coding is really, really bad at this.
3 replies
0 recast
10 reactions

Arti Villa pfp
Arti Villa
@artivilla.eth
Can you just provide a prompt that I can ask my AI to check all the security issues that are mini-app specific?
1 reply
0 recast
0 reaction

derek pfp
derek
@derek
Not miniapp specific, but I use often something akin to this as a final step before pushing production code to production. Hope this helps! https://gist.github.com/derekbrown/dd235b50279e4f74a6a885052babe7e8
2 replies
0 recast
3 reactions

Arti Villa pfp
Arti Villa
@artivilla.eth
lovely
1 reply
0 recast
1 reaction

derek pfp
derek
@derek
You’re welcome!
0 reply
0 recast
0 reaction