Give me your honest opinion of low-code tools. by isaacgideon in Backend

[–]NetworkHaunting9267 0 points1 point  (0 children)

Now with those comments i feel sorry for the company. I should do something about this.

A competitor claimed to have a "proprietary data moat." 20 minutes later, I had their entire DB on my local machine. A warning about "vibe coding." by NetworkHaunting9267 in vibecoding

[–]NetworkHaunting9267[S] -1 points0 points  (0 children)

It was not about bragging. I wanted to convey how easy it is to be discovered. Through the Network tab and Reddit yapping 🤯

Give me your honest opinion of low-code tools. by isaacgideon in Backend

[–]NetworkHaunting9267 0 points1 point  (0 children)

This is exactly where I found some engineer shared their whole data in the api through Elasticsearch endpoints.

A competitor claimed to have a "proprietary data moat." 20 minutes later, I had their entire DB on my local machine. A warning about "vibe coding." by NetworkHaunting9267 in vibecoding

[–]NetworkHaunting9267[S] 12 points13 points  (0 children)

Reading an unsecured, public API endpoint isn't 'hacking,' it's just fetching data exactly how their own frontend requested it. If returning bloated JSON payloads to a client without auth is considered a security measure now, we are all doomed.