Engineering Library

Security

Practical, standards-based security for teams that build.

Definition

What Security covers

This category covers security in software development — authentication, secrets, common vulnerabilities and what you should never build yourself.

What this category covers

  • Security checklist for web applications
  • OAuth 2.0 and OIDC explained
  • Session vs. JWT
  • Anti-pattern: rolling your own authentication
Reference Guides

Solid answers in this field.

In-depth, citable documents — every recommendation with its trade-off, its cost and the case in which we decide differently.

New articles in this category are published on an ongoing basis. You can already find the core terms in the glossary.

Go to the glossary
Knowledge graph

Continue your engineering journey.

Related concepts, decisions, playbooks and perspectives — as one connected path, not a list of links.

A concrete problem in this field?

We don't just solve it on paper. Talk to the engineers who would build it.