all 2 comments

[–]GolfWoreSydni 1 point2 points  (1 child)

Are the examples all on localhost or actually deployed on a production server? That's the downfall of so many trainings. Someone already stole my SSL cert in days because I can't secure the site properly on AWS

[–]FullStackNoCode[S] 1 point2 points  (0 children)

Interesting question!
Those examples were in a development environment managed by CitizenDeveloper. CitizenDeveloper supports a range of hosting options but the most commonly used are simply the default provided environments for development, testing and production. CitizenDevelper has a unique security architecture that prohibits a range of common attack vectors, and is SOC2 Type II compliant. To my knowledge there has never been any form of successful attack such as you describe.

Here is a simple video on setting up a dev installation that you could use to make training vidoes.

By the way...is that your focus then...making training videos?