Loading page…
Loading page…
Security guides
Security guides for Lovable, Bolt, Supabase, Cursor and Next.js apps: the mistakes AI tools make, how to spot them and a prompt to fix them.
Lovable
Is your Lovable app secure? The common gaps: open Supabase tables, keys in the browser and missing headers. How to check yours, plus a prompt to fix them.
Read the guideBolt
Is your Bolt.new app secure? Secret keys in the bundle, open databases, exposed files and missing headers: how to check yours and a prompt to fix them.
Read the guideSupabase
Supabase security checklist: Row Level Security, anon vs service_role keys, storage and RPC. What to check, what a scan can catch and a prompt to fix it.
Read the guideCursor
What to check before shipping an app built with Cursor: secrets, headers, cookies, exposed files and open endpoints, plus a fix prompt Cursor can run.
Read the guideNext.js
Next.js security checklist: security headers, NEXT_PUBLIC_ env vars, source maps, cookies and route handlers, plus a prompt to fix them.
Read the guide