@mdnlabs Supabase.
Reasons:
Better DX for indie builders
RLS built-in (security by default)
Easier to audit later
Open source = no vendor lock-in
Good luck with the launch! ✅
@ziwenxu_ False choice.
With AI tools you can have both.
The problem isn't speed OR quality.
It's founders who ship at AI speed but never go back to fix the quality gaps.
@jonathanbrnd Yes, but with blind spots.
I've audited multiple vibecoding projects at scale.
Common issues:
- Missing auth edge cases
- Payment logic bypasses
- No rate limiting
The code works but the security doesn't always scale with it.
@alexcooldev This is it.
For Loopside: I moved too slow validating the "perfect" approach.
Should've just:
- Run 10 free audits
- Get testimonials
- Start charging
Speed = data.
Data = direction.
@phuctm97 More code written by AI = more security gaps.
Result: Apps shipping with exposed keys, payment bypasses, and logic flaws.
By end of 2026, security audits for AI-built code will be standard practice.
@dev_maims Both.
Node.js is a real backend runtime.
But many devs skip proper backend practices:
• Input validation
• Auth logic
• Rate limiting
Result: Backend that works, but isn't secure.
@JohnnyHayka Sounds like a very smart approach.
I've found mentioning a *specific* issue I found in their
code gets responses even cold though.
What's your tool? Curious if it surfaces technical
discussions (security, payments, etc).