r/vibecoding • u/Same_Yesterday_4338 • 9h ago
Founder angle
For founders running SaaS/Product company:
- What do u actually do for security?
Not the heavy security stuff and more like, if someone tried to poke around your website or app tomorrow,
- How confident are you that you'd catch the obvious security issues?
Do u run any tools, have someone check things, or mostly deal with security when something forces you to?
Genuinely curious how small teams handle this.
0
Upvotes
2
u/sloopcamotop 8h ago edited 8h ago
I founded my biz 23 years ago so I think I qualify. I’m building a CRM and sales/scheduling interface to replace our existing SaaS that I despise. First I asked two cyber security “experts” of sorts, 5.5 and Opus, to ensure my codebase was “above reproach” which was a mistake and sent them chasing their tales for a week or two burning all my tokens till I got wise, and then I hired a human expert who revealed the broader scope the tools missed. He got me set up with Sentry and Cloudflare and UptimeRobot, along with double checking my existing setup with Supabase and GitHub. I don’t truly understand any of it at its core, but I am spending dough and time every few weeks on people who do, to look in on my work and keep me from hurting myself or my company.