@andr3barroso I use a design system as my foundation, then customize the UI with intentional choices around typography, spacing, colors, and interactions. I also use real products for inspiration rather than blindly following AI-generated patterns. The key is to give the app its own identity..
@Shahbaztwt@itsalicesoul That’s exactly what I was thinking before creating https://t.co/p9ctW7XNm2
More than 900 SaaS are being launched worldwide every day, and many of them are already generating MRR.
Now imagine how many of them overlooked the small security details... 😅
My spreadsheet import worked perfectly on localhost.
In production it hung forever. No error.
The culprit: my own Content-Security-Policy, blocking a blob: web worker.
I got protected from myself.
11 of the 279 SaaS homepages I scanned had a secret sitting in their JavaScript. 2 of them critical.
If it's in your bundle, it's public.
Minification is not encryption.
I build Sumbrel with several AI coding sessions working in the same repo.
One of them staged a file deletion. Another one committed it.
New rule for my agents: nobody stages anything they're not committing right now.
Every scan in Sumbrel comes with a share card I designed to be boring on purpose.
Your domain, your score, and one question: "And your SaaS?"
Never the findings.
I deleted a feature.
Forgot 3 imports.
The build broke. Then the server crashed. Then it crashed again.
3 fix commits in 6 minutes. Not my finest evening.